| 2025 | Study Club, Labor Union or Start-Up? Characterizing Teams and Collaboration in the Bug Bounty Ecosystem. | Yangheran Piao, Temima Hrle, Daniel W. Woods, Ross Anderson |
| 2025 | Restricting the Link: Effects of Focused Attention and Time Delay on Phishing Warning Effectiveness. | Justin Petelka, Benjamin Berens, Carlo Sugatan, Melanie Volkamer, Florian Schaub |
| 2025 | RGFuzz: Rule-Guided Fuzzer for WebAssembly Runtimes. | Junyoung Park, Yunho Kim, Insu Yun |
| 2025 | Privacy-Preserving Mutual Authentication Protocol for Federated Learning in Intelligent Transportation Systems. | Rohini Poolat Parameswarath, Biplab Sikdar |
| 2025 | HydraProofs: Optimally Computing All Proofs in a Vector Commitment (With Applications to Efficient zkSNARKs Over Data from Multiple Users). | Christodoulos Pappas, Dimitrios Papadopoulos, Charalampos Papamanthou |
| 2025 | PFortifier: Mitigating PHP Object Injection Through Automatic Patch Generation. | Bo Pang, Yiheng Zhang, Mingzhe Gao, Junzhe Zhang, Ligeng Chen, Mingxue Zhang, Gang Liang |
| 2025 | Volatile and Persistent Memory for zkSNARKs via Algebraic Interactive Proofs. | Alex Ozdemir, Evan Laufer, Dan Boneh |
| 2025 | Papercraft: Lattice-Based Verifiable Delay Function Implemented. | Michal Osadnik, Darya Kaviani, Valerio Cini, Russell W. F. Lai, Giulio Malavolta |
| 2025 | Network Hexagons Under Attack: Secure Crowdsourcing of Georeferenced Data. | Okemawo Obadofin, Joo Barros |
| 2025 | Is Nobody There? Good! Globally Measuring Connection Tampering Without Responsive Endhosts. | Sadia Nourin, Erik C. Rye, Kevin Bock, Nguyen Phong Hoang, Dave Levin |
| 2025 | Composite Explanation-Aware Attacks. | Maximilian Noppel, Christian Wressnegger |
| 2025 | Warning! The Timeout T Cannot Protect You From Losing Coins: PipeSwap: Forcing the Timely Release of a Secret for Atomic Cross-Chain Swaps. | Peifang Ni, Anqi Tian, Jing Xu |
| 2025 | Transport Layer Obscurity: Circumventing SNI Censorship on the TLS-Layer. | Niklas Niere, Felix Lange, Robert Merget, Juraj Somorovsky |
| 2025 | PEARTS: Provable Execution in Real-Time Embedded Systems. | Antonio Joia Neto, Norrathep Rattanavipanon, Ivan De Oliveira Nunes |
| 2025 | "It's almost like Frankenstein": Investigating the Complexities of Scientific Collaboration and Privilege Management within Research Computing Infrastructures. | Souradip Nath, Ananta Soneji, Jaejong Baek, Tiffany Bao, Adam Doup, Carlos E. Rubio-Medrano, Gail-Joon Ahn |
| 2025 | Speedrunning the Maze: Meeting Regulatory Patching Deadlines in a Large Enterprise Environment. | Gerbrand ten Napel, Michel van Eeten, Simon Parkin |
| 2025 | Augmented Shuffle Protocols for Accurate and Robust Frequency Estimation Under Differential Privacy. | Takao Murakami, Yuichi Sei, Reo Eriguchi |
| 2025 | "You Have to Ignore the Dangers": User Perceptions of the Security and Privacy Benefits of WhatsApp Mods. | Collins W. Munyendo, Kentrell Owens, Faith Strong, Shaoqi Wang, Adam J. Aviv, Tadayoshi Kohno, Franziska Roesner |
| 2025 | Investigating Physical Latency Attacks Against Camera-Based Perception. | Raymond Muller, Ruoyu Song, Chenyi Wang, Yuxia Zhan, Jean-Philippe Monteuuis, Yanmao Man, Ming Li, Ryan M. Gerdes, Jonathan Petit, Z. Berkay Celik |
| 2025 | AccuRevoke: Enhancing Certificate Revocation with Distributed Cryptographic Accumulators. | Munshi Rejwan Ala Muid, Taejoong Chung, Thang Hoang |
| 2025 | Slice+Slice Baby: Generating Last-Level Cache Eviction Sets in the Blink of an Eye. | Bradley Morgan, Gal Horowitz, Sioli O'Connell, Stephan van Schaik, Chitchanok Chuengsatiansup, Daniel Genkin, Olaf Maennel, Paul Montague, Eyal Ronen, Yuval Yarom |
| 2025 | Trust Nobody: Privacy-Preserving Proofs for Edited Photos with Your Laptop. | Pierpaolo Della Monica, Ivan Visconti, Andrea Vitaletti, Marco Zecchini |
| 2025 | IUBIK: Isolating User Bytes in Commodity Operating System Kernels via Memory Tagging Extensions. | Marius Momeu, Alexander J. Gaidis, Jasper v. d. Heidt, Vasileios P. Kemerlis |
| 2025 | Connecting the Extra Dots (Contexts): Correlating External Information about Point of Interest for Attack Investigation. | Sareh Mohammadi, Hugo Kermabon-Bobinnec, Azadeh Tabiban, Lingyu Wang, Toms Navarro Mnera, Yosr Jarraya |
| 2025 | BadRAM: Practical Memory Aliasing Attacks on Trusted Execution Environments. | Jesse De Meulemeester, Luca Wilke, David F. Oswald, Thomas Eisenbarth, Ingrid Verbauwhede, Jo Van Bulck |