| 2026 | COSSETER: GitHub Actions Permission Reduction Using Demand-Driven Static Analysis. | Greg Tystahl, Jonah Ghebremichael, Siddharth Muralee, Sourag Cherupattamoolayil, Antonio Bianchi, Aravind Machiry, Alexandros Kapravelos, William Enck |
| 2026 | Cottontail: Large Language Model-Driven Concolic Execution for Highly Structured Test Input Generation. | Haoxin Tu, Seongmin Lee, Yuxian Li, Peng Chen, Lingxiao Jiang, Marcel Bhme |
| 2026 | Defeating Transient Execution Attacks by Limiting Secret Reachability Through Register Hiding and ShadowCFI. | Danil Trujillo, Jagadish Kotra, David Kaplan, Mengjia Yan |
| 2026 | Toward Inclusive Security and Privacy for Deaf and Hard-of-Hearing People: A Community-Based Interview Study. | Mindy Tran, Xinru Tang, Adryana Hutchinson, Adam J. Aviv, Yixin Zou |
| 2026 | RISCy Cache Coherence: Timer-Free Architectural Cache Attacks via Instruction/Data Cache Incoherence. | Fabian Thomas, Michael Schwarz |
| 2026 | Know-It-All?: A Human-Calibrated LLM Benchmark for Cybersecurity Knowledge. | Athanasios Theocharis, Armin Buescher, Omer Akgul, Dario Pasquini, Oystein Fladby, Daniel Marino, Christopher Gates, Petros Efstathopoulos |
| 2026 | Death Is Not the End: a Longitudinal Study on the Impact of Automatic Updates on Container Vulnerability Lifespans. | Simge Tekin, Octavian Suciu, Sungsu Kwag, Yonghwi Kwon, Tudor Dumitras |
| 2026 | Responsible Disclosure is a Two-Way Street: Empirically Measuring the Responsible Disclosure Contract in the Firmware Ecosystem. | Hui Jun Tay, Souradip Nath, Arvind S. Raj, Abhay Bhat, Ishan Bansal, Audrey Dutcher, Moritz Schloegel, Adam Doup, Tiffany Bao, Yan Shoshitaishvili, Ruoyu Wang |
| 2026 | Robot: Robust Threshold BBS+ in Two Rounds. | Guofeng Tang, Tian Qiu, Bowen Jiang, Haiyang Xue, Guomin Yang, Man Ho Au, Robert H. Deng, Kwok-Yan Lam |
| 2026 | zkFuzz: Foundation and Framework for Effective Fuzzing of Zero-Knowledge Circuits. | Hideaki Takahashi, Jihwan Kim, Suman Jana, Junfeng Yang |
| 2026 | Exploiting Leaderboards for Large-Scale Distribution of Malicious Models. | Anshuman Suri, Harsh Chaudhari, Yuefeng Peng, Ali Naseh, Alina Oprea, Amir Houmansadr |
| 2026 | BACHunter: Detecting Broken Access Control Vulnerabilities in Intelligent Connected Vehicles. | Yanbang Sun, Xiaohong Li, Quanzhou Wang, Hebo Leng, Guangzheng Yao, Zhihua Xie, Qiang Hu, Junjie Wang |
| 2026 | Can I Get More? An Incremental Inference Attack on Encrypted SQL. | Xiaoqian Sun, Ruiqi He, Yang Zhang, Siyi Lv, Guiyun Qin, Fangzhou Yi, Zheli Liu, Xiaofeng Chen |
| 2026 | URLcoat: Exploiting Web Search Capability to Jailbreak Large Language Models. | Yiheng Sun, Linkang Du, Zhou Su, Yuntao Wang, Han Liu |
| 2026 | Decomposition-Based Optimal Bounds for Privacy Amplification via Shuffling. | Pengcheng Su, Haibo Cheng, Ping Wang |
| 2026 | Experience Paper: Is This the Real Life? Is This Just Fantasy? Hunting for Hallucinated References in Paper Submissions. | Gianluca Stringhini, Jeremy Blackburn |
| 2026 | Behind the Curtain: How Shared Hosting Providers Respond to Vulnerability Notifications. | Giada Stivala, Rafael Mrowczynski, Maria Hellenthal, Giancarlo Pellegrino |
| 2026 | The Battle of Metasurfaces: Understanding Security in Smart Radio Environments. | Paul Staat, Christof Paar, Swarun Kumar |
| 2026 | Privacy-Conscious Algorithm Design Via PAC Privacy. | Mayuri Sridhar, Xiaochen Zhu, Srinivas Devadas |
| 2026 | Nonlocalizable Jamming with Curving Beams. | Caroline Jane Spindel, Edward W. Knightly |
| 2026 | SeqAss: Using SeqUential Associative Caches to Mitigate Conflict-Based Cache Attacks with Reduced Cache Misses and Performance Overhead. | Wei Song, Zhidong Wang, Jinchi Han, Da Xie, Hao Ma, Peng Liu |
| 2026 | Usable Anonymity in Reproductive Health Privacy. | Qiurong Song, Yanlai Wu, Rie Helene Hernandez, Yao Li, Yubo Kou, Xinning Gui |
| 2026 | Decor: Delegated Computation on Randomness for Secure Evaluation of Nonlinear Functions. | Haris Smajlovic, Kyle Sheng, Timos Antonopoulos, Ruzica Piskac, Hyunghoon Cho |
| 2026 | LLMs in the SOC: An Empirical Study of Human-AI Collaboration in Security Operations Centres. | Ronal Singh, Shahroz Tariq, Fatemeh Jalalvand, Mohan Baruwal Chhetri, Surya Nepal, Ccile Paris, Martin Lochner |
| 2026 | Incalmo: an Autonomous Llm-Assisted System for Red Teaming Multi-Host Networks. | Brian Singer, Keane Lucas, Lakshmi Adiga, Meghna Jain, Lujo Bauer, Vyas Sekar |