| 2026 | NDSS | Les Dissonances: Cross-Tool Harvesting and Polluting in Pool-of-Tools Empowered LLM Agents. | Zichuan Li, Jian Cui, Xiaojing Liao, Luyi Xing |
| 2026 | SP | Understanding and Analyzing Privacy Risks in Mobile Consent-Management Platforms. | Jingzhou Ye, Fares Alharbi, Luyi Xing, Xueqiang Wang |
| 2025 | CCS | SaTS '25: The 3rd ACM Workshop on Security and Privacy of AI-Empowered Mobile Super Apps. | Luyi Xing, Yue Xiao |
| 2025 | NDSS | JBomAudit: Assessing the Landscape, Compliance, and Security Implications of Java SBOMs. | Yue Xiao, Dhilung Kirat, Douglas Lee Schales, Jiyong Jang, Luyi Xing, Xiaojing Liao |
| 2025 | NDSS | Hidden and Lost Control: on Security Design Risks in IoT User-Facing Matter Controller. | Haoqiang Wang, Yiwei Fang, Yichen Liu, Ze Jin, Emma Delph, Xiaojiang Du, Qixu Liu, Luyi Xing |
| 2025 | NDSS | SKILLPoV: Towards Accessible and Effective Privacy Notice for Amazon Alexa Skills. | Jingwen Yan, Song Liao, Mohammed Aldeen, Luyi Xing, Danfeng Yao, Long Cheng |
| 2024 | CCS | SaTS '24: The 2nd ACM Workshop on Secure and Trustworthy Superapps. | Zhiqiang Lin, Luyi Xing |
| 2024 | CCS | Measuring Compliance Implications of Third-party Libraries' Privacy Label Disclosure Guidelines. | Yue Xiao, Chaoqi Zhang, Yue Qin, Fares Fahad S. Alharbi, Luyi Xing, Xiaojing Liao |
| 2024 | NDSS | Leaking the Privacy of Groups and More: Understanding Privacy Risks of Cross-App Content Sharing in Mobile Ecosystem. | Jiangrong Wu, Yuhong Nan, Luyi Xing, Jiatao Cheng, Zimin Lin, Zibin Zheng, Min Yang |
| 2024 | SP | MQTTactic: Security Analysis and Verification for Logic Flaws in MQTT Implementations. | Bin Yuan, Zhanxiang Song, Yan Jia, Zhenyu Lu, Deqing Zou, Hai Jin, Luyi Xing |
| 2023 | CCS | The Danger of Minimum Exposures: Understanding Cross-App Information Leaks on iOS through Multi-Side-Channel Learning. | Zihao Wang, Jiale Guan, XiaoFeng Wang, Wenhao Wang, Luyi Xing, Fares Fahad S. Alharbi |
| 2022 | CCS | P-Verifier: Understanding and Mitigating Security Risks in Cloud-based IoT Access Policies. | Ze Jin, Luyi Xing, Yiwei Fang, Yan Jia, Bin Yuan, Qixu Liu |
| 2022 | CCS | Perils and Mitigation of Security Risks of Cooperation in Mobile-as-a-Gateway IoT. | Xin'an Zhou, Jiale Guan, Luyi Xing, Zhiyun Qian |
| 2022 | SP | Robbery on DevOps: Understanding and Mitigating Illicit Cryptomining on Continuous Integration Service Platforms. | Zhi Li, Weijie Liu, Hongbo Chen, XiaoFeng Wang, Xiaojing Liao, Luyi Xing, Mingming Zha, Hai Jin, Deqing Zou |
| 2021 | CCS | Who's In Control? On Security Risks of Disjointed IoT Device Management Channels. | Yan Jia, Bin Yuan, Luyi Xing, Dongfang Zhao, Yifan Zhang, XiaoFeng Wang, Yijing Liu, Kaimin Zheng, Peyton Crnjak, Yuqing Zhang, Deqing Zou, Hai Jin |
| 2020 | CCS | iDEA: Static Analysis on the Security of Apple Kernel Drivers. | Xiaolong Bai, Luyi Xing, Min Zheng, Fuping Qu |
| 2020 | CCS | Demystifying Resource Management Risks in Emerging Mobile App-in-App Ecosystems. | Haoran Lu, Luyi Xing, Yue Xiao, Yifan Zhang, Xiaojing Liao, XiaoFeng Wang, Xueqiang Wang |
| 2020 | CCS | RTFM! Automatic Assumption Discovery and Verification Derivation from Library Document for API Misuse Detection. | Tao Lv, Ruishi Li, Yi Yang, Kai Chen, Xiaojing Liao, XiaoFeng Wang, Peiwei Hu, Luyi Xing |
| 2020 | SP | Burglars' IoT Paradise: Understanding and Mitigating Security Risks of General Messaging Protocols on IoT Clouds. | Yan Jia, Luyi Xing, Yuhang Mao, Dongfang Zhao, XiaoFeng Wang, Shangru Zhao, Yuqing Zhang |
| 2017 | CCS | Unleashing the Walking Dead: Understanding Cross-App Remote Infections on Mobile WebViews. | Tongxin Li, Xueqiang Wang, Mingming Zha, Kai Chen, XiaoFeng Wang, Luyi Xing, Xiaolong Bai, Nan Zhang, Xinhui Han |
| 2016 | CCS | Lurking Malice in the Cloud: Understanding and Detecting Cloud Repository as a Malicious Service. | Xiaojing Liao, Sumayah A. Alrwais, Kan Yuan, Luyi Xing, XiaoFeng Wang, Shuang Hao, Raheem A. Beyah |
| 2016 | CCS | Acing the IOC Game: Toward Automatic Discovery and Analysis of Open-Source Cyber Threat Intelligence. | Xiaojing Liao, Kan Yuan, XiaoFeng Wang, Zhou Li, Luyi Xing, Raheem A. Beyah |
| 2016 | SP | Staying Secure and Unprepared: Understanding and Mitigating the Security Risks of Apple ZeroConf. | Xiaolong Bai, Luyi Xing, Nan Zhang, XiaoFeng Wang, Xiaojing Liao, Tongxin Li, Shi-Min Hu |
| 2016 | SP | Seeking Nonsense, Looking for Trouble: Efficient Promotional-Infection Detection through Semantic Inconsistency Search. | Xiaojing Liao, Kan Yuan, XiaoFeng Wang, Zhongyu Pei, Hao Yang, Jianjun Chen, Hai-Xin Duan, Kun Du, Eihal Alowaisheq, Sumayah A. Alrwais, Luyi Xing, Raheem A. Beyah |
| 2015 | CCS | Cracking App Isolation on Apple: Unauthorized Cross-App Resource Access on MAC OS~X and iOS. | Luyi Xing, Xiaolong Bai, Tongxin Li, XiaoFeng Wang, Kai Chen, Xiaojing Liao, Shi-Min Hu, Xinhui Han |
| 2014 | CCS | Mayhem in the Push Clouds: Understanding and Mitigating Security Hazards in Mobile Push-Messaging Services. | Tongxin Li, Xiao-yong Zhou, Luyi Xing, Yeonjoon Lee, Muhammad Naveed, XiaoFeng Wang, Xinhui Han |
| 2014 | SP | Upgrading Your Android, Elevating My Malware: Privilege Escalation through Mobile OS Updating. | Luyi Xing, Xiaorui Pan, Rui Wang, Kan Yuan, XiaoFeng Wang |
| 2013 | CCS | Unauthorized origin crossing on mobile platforms: threats and mitigation. | Rui Wang, Luyi Xing, XiaoFeng Wang, Shuo Chen |
| 2013 | NDSS | InteGuard: Toward Automatic Protection of Third-Party Web Service Integrations. | Luyi Xing, Yangyi Chen, XiaoFeng Wang, Shuo Chen |
| 2010 | RAID | A Client-Based and Server-Enhanced Defense Mechanism for Cross-Site Request Forgery. | Luyi Xing, Yuqing Zhang, Shenlong Chen |