Usenix Security Symposium (USENIX-Security) InstrSem: Automatically and Generically Inferring Semantics of (Undocumented) CPU Instructions
ACM Conference on Computer and Communications Security (CCS) RISCover: Automatic Discovery of User-exploitable Architectural Security Vulnerabilities in Closed-Source RISC-V CPUs
IEEE Symposium on Security and Privacy (S&P) Rapid Reversing of Non-Linear CPU Cache Slice Functions: Unlocking Physical Address Leakage
The Web Conference (WWW) Peripheral Instinct: How External Devices Breach Browser Sandboxes
International Conference on Architectural Support for Programming Languages and Operating Systems (ASPLOS) ShadowLoad: Injecting State into Hardware Prefetchers
Usenix Security Symposium (USENIX-Security) CacheWarp: Software-based Fault Injection using Selective State Reset
ACM ASIA Conference on Computer and Communications Security (AsiaCCS) Switchpoline: A Software Mitigation for Spectre-BTB and Spectre-BHB on ARMv
IEEE Symposium on Security and Privacy (S&P) To Auth or Not To Auth? A Comparative Analysis of the Pre- and Post-Login Security Landscape
ACM Conference on Computer and Communications Security (CCS)
GI International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment (DIMVA)