<?xml version="1.0" encoding="utf-8" standalone="yes" ?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Long Lu</title>
    <link>/</link>
      <atom:link href="/index.xml" rel="self" type="application/rss+xml" />
    <description>Long Lu</description>
    <generator>Source Themes Academic (https://sourcethemes.com/academic/)</generator><language>en-us</language><copyright>©2020</copyright><lastBuildDate>Sun, 01 Aug 2021 00:00:00 +0000</lastBuildDate>
    <image>
      <url>/img/long_lu.jpg</url>
      <title>Long Lu</title>
      <link>/</link>
    </image>
    
    <item>
      <title>Finding Bugs Using Your Own Code: Detecting Functionally-similar yet Inconsistent Code</title>
      <link>/publication/fics/</link>
      <pubDate>Sun, 01 Aug 2021 00:00:00 +0000</pubDate>
      <guid>/publication/fics/</guid>
      <description></description>
    </item>
    
    <item>
      <title>PTAuth: Temporal Memory Safety via Robust Points-to Authentication</title>
      <link>/publication/ptauth/</link>
      <pubDate>Sun, 01 Aug 2021 00:00:00 +0000</pubDate>
      <guid>/publication/ptauth/</guid>
      <description></description>
    </item>
    
    <item>
      <title>DICE: Automatic Emulation of DMA Input Channels for Dynamic Firmware Analysis</title>
      <link>/publication/dice/</link>
      <pubDate>Sat, 01 May 2021 00:00:00 +0000</pubDate>
      <guid>/publication/dice/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Google will sponsor our research on hardware-based memory safety via an &lt;span style=&#34;color: #007AFF&#34;&gt;ASPIRE Award&lt;/span&gt;.</title>
      <link>/news/20-fund-goog/</link>
      <pubDate>Fri, 30 Oct 2020 17:05:21 -0400</pubDate>
      <guid>/news/20-fund-goog/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Google ASPIRE Award</title>
      <link>/funding/goog-20-aspire/</link>
      <pubDate>Fri, 30 Oct 2020 00:00:00 +0000</pubDate>
      <guid>/funding/goog-20-aspire/</guid>
      <description></description>
    </item>
    
    <item>
      <title>MEUZZ: Smart Seed Scheduling for Hybrid Fuzzing</title>
      <link>/publication/meuzz/</link>
      <pubDate>Thu, 01 Oct 2020 00:00:00 +0000</pubDate>
      <guid>/publication/meuzz/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Rethinking Fuzzing for Security</title>
      <link>/funding/nsf-20-fuzzing/</link>
      <pubDate>Thu, 01 Oct 2020 00:00:00 +0000</pubDate>
      <guid>/funding/nsf-20-fuzzing/</guid>
      <description></description>
    </item>
    
    <item>
      <title>NSF will fund our research on optimizing fuzzing for vulnerability coverage.</title>
      <link>/news/20-fund-fuzzing/</link>
      <pubDate>Sun, 20 Sep 2020 12:34:34 -0400</pubDate>
      <guid>/news/20-fund-fuzzing/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Two papers, [FICS](/publication/fics/) (finding bugs using your own code) and [PTAuth](/publication/ptauth/) (points-to authentication for temporal safety), are accepted by [USENIX Security&#39;21](https://www.usenix.org/conference/usenixsecurity21).</title>
      <link>/news/20-pub-ficsptauth/</link>
      <pubDate>Wed, 05 Aug 2020 12:11:47 -0400</pubDate>
      <guid>/news/20-pub-ficsptauth/</guid>
      <description></description>
    </item>
    
    <item>
      <title>P2IM: Scalable and Hardware-independent Firmware Testing via Automatic Peripheral Interface Modeling</title>
      <link>/publication/p-2-im/</link>
      <pubDate>Sat, 01 Aug 2020 00:00:00 +0000</pubDate>
      <guid>/publication/p-2-im/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Our [DICE](/publication/dice/) paper, on DMA-enabled embedded firmware analysis, is accepted by &lt;a target=&#34;_blank&#34; href=&#34;https://www.ieee-security.org/TC/SP2021/&#34;&gt;S&amp;P/Oakland&#39;21&lt;/a&gt;.</title>
      <link>/news/2020-pub-dice/</link>
      <pubDate>Sun, 21 Jun 2020 21:49:20 -0400</pubDate>
      <guid>/news/2020-pub-dice/</guid>
      <description></description>
    </item>
    
    <item>
      <title>I&#39;m awarded (early) tenure at Northeastern. I couldn&#39;t have done it without my students, collaborators, and family. Thank you all!</title>
      <link>/news/20-award-tenure/</link>
      <pubDate>Fri, 05 Jun 2020 00:26:40 -0400</pubDate>
      <guid>/news/20-award-tenure/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Our [MEUZZ](/publication/meuzz) paper is accepted by &lt;a target=&#34;_blank&#34; href=&#34;https://raid2020.org/&#34;&gt;RAID 2020&lt;/a&gt;.</title>
      <link>/news/20_pub_meuzz/</link>
      <pubDate>Tue, 26 May 2020 18:05:04 -0400</pubDate>
      <guid>/news/20_pub_meuzz/</guid>
      <description></description>
    </item>
    
    <item>
      <title>OAT: Attesting Operation Integrity of Embedded Devices</title>
      <link>/publication/oat/</link>
      <pubDate>Fri, 01 May 2020 00:00:00 +0000</pubDate>
      <guid>/publication/oat/</guid>
      <description></description>
    </item>
    
    <item>
      <title>SAVIOR: Towards Bug-Driven Hybrid Testing</title>
      <link>/publication/savior/</link>
      <pubDate>Fri, 01 May 2020 00:00:00 +0000</pubDate>
      <guid>/publication/savior/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Detecting (Absent) App-to-app Authentication on Cross-device Short-distance Channels</title>
      <link>/publication/cristalli-19/</link>
      <pubDate>Sun, 01 Dec 2019 00:00:00 +0000</pubDate>
      <guid>/publication/cristalli-19/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Our [OAT](/publication/oat) paper, on operation integrity attestation, is accepted by &lt;a target=&#34;_blank&#34; href=&#34;https://www.ieee-security.org/TC/SP2020/&#34;&gt;S&amp;P/Oakland&#39;20&lt;/a&gt;.</title>
      <link>/news/19-pub-oat/</link>
      <pubDate>Mon, 30 Sep 2019 17:05:21 -0400</pubDate>
      <guid>/news/19-pub-oat/</guid>
      <description></description>
    </item>
    
    <item>
      <title>An Analysis of Malware Trends in Enterprise Networks</title>
      <link>/publication/acar-19/</link>
      <pubDate>Sun, 01 Sep 2019 00:00:00 +0000</pubDate>
      <guid>/publication/acar-19/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Google will sponsor our research on mobile security via an &lt;span style=&#34;color: #007AFF&#34;&gt;ASPIRE Award&lt;/span&gt;.</title>
      <link>/news/19-fund-goog/</link>
      <pubDate>Fri, 30 Aug 2019 17:05:21 -0400</pubDate>
      <guid>/news/19-fund-goog/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Our &lt;a href=&#34;/publication/p-2-im&#34;&gt;P&lt;sup&gt;2&lt;/sup&gt;IM&lt;/a&gt; paper, on scalable and hardware-independent firmware testing, is accepted by &lt;a target=&#34;_blank&#34; href=&#34;https://www.usenix.org/conference/usenixsecurity20&#34;&gt;USENIX Security 2020&lt;/a&gt;.</title>
      <link>/news/19-pub-p2im/</link>
      <pubDate>Tue, 20 Aug 2019 17:05:21 -0400</pubDate>
      <guid>/news/19-pub-p2im/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Our [paper](/publication/cristalli-19) on detecting insecure cross-device authentication is accepted by &lt;a target=&#34;_blank&#34; href=&#34;https://www.acsac.org/2019/&#34;&gt;ACSAC&#39;19&lt;/a&gt;.</title>
      <link>/news/19-pub-catch/</link>
      <pubDate>Thu, 01 Aug 2019 17:05:21 -0400</pubDate>
      <guid>/news/19-pub-catch/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Google ASPIRE Award</title>
      <link>/funding/goog-19-aspire/</link>
      <pubDate>Thu, 01 Aug 2019 00:00:00 +0000</pubDate>
      <guid>/funding/goog-19-aspire/</guid>
      <description></description>
    </item>
    
    <item>
      <title>StreamBox-TZ: Secure Stream Analytics at the Edge with TrustZone</title>
      <link>/publication/streambox-tz/</link>
      <pubDate>Mon, 01 Jul 2019 00:00:00 +0000</pubDate>
      <guid>/publication/streambox-tz/</guid>
      <description></description>
    </item>
    
    <item>
      <title>PTrix: Efficient Hardware-Assisted Fuzzing for COTS Binary</title>
      <link>/publication/ptrix/</link>
      <pubDate>Sat, 01 Jun 2019 00:00:00 +0000</pubDate>
      <guid>/publication/ptrix/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Our [SAVIOR](/publication/savior) paper is accepted by &lt;a target=&#34;_blank&#34; href=&#34;https://www.ieee-security.org/TC/SP2020/&#34;&gt;S&amp;P/Oakland&#39;20&lt;/a&gt;.</title>
      <link>/news/19-pub-savior/</link>
      <pubDate>Tue, 30 Apr 2019 18:05:21 -0400</pubDate>
      <guid>/news/19-pub-savior/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Our [PTrix](/publication/ptrix) paper is accepted by &lt;a target=&#34;_blank&#34; href=&#34;https://asiaccs2019.blogs.auckland.ac.nz/&#34;&gt;AsiaCCS&#39;19&lt;/a&gt;</title>
      <link>/news/19-pub-ptrix/</link>
      <pubDate>Tue, 30 Apr 2019 17:05:21 -0400</pubDate>
      <guid>/news/19-pub-ptrix/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Our [StreamBox-TZ](/publication/streambox-tz) paper is accepted by &lt;a target=&#34;_blank&#34; href=&#34;https://www.usenix.org/conference/atc19&#34;&gt;USENIX ATC&#39;19&lt;/a&gt;.</title>
      <link>/news/19-pub-streambox/</link>
      <pubDate>Sat, 20 Apr 2019 17:05:21 -0400</pubDate>
      <guid>/news/19-pub-streambox/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Our [TEEv paper](/publication/li-2019/) won the **Best Paper Award** at  &lt;a target=&#34;_blank&#34; href=&#34;https://conf.researchr.org/home/vee-2019&#34;&gt;ACM VEE&#39;19&lt;/a&gt;!</title>
      <link>/news/19-pub-teev/</link>
      <pubDate>Wed, 10 Apr 2019 17:05:21 -0400</pubDate>
      <guid>/news/19-pub-teev/</guid>
      <description></description>
    </item>
    
    <item>
      <title>TEEv: Virtualizing Trusted Execution Environments on Mobile Platforms</title>
      <link>/publication/li-2019/</link>
      <pubDate>Mon, 01 Apr 2019 00:00:00 +0000</pubDate>
      <guid>/publication/li-2019/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Internet-of-Things (IoT) and Cyber-Physical Systems (CPS) Security</title>
      <link>/funding/pwc-19-iot/</link>
      <pubDate>Mon, 01 Oct 2018 00:00:00 +0000</pubDate>
      <guid>/funding/pwc-19-iot/</guid>
      <description></description>
    </item>
    
    <item>
      <title> An Empirical Study of Web Resource Manipulation in Real-world Mobile Applications</title>
      <link>/publication/zhang-2018/</link>
      <pubDate>Wed, 01 Aug 2018 00:00:00 +0000</pubDate>
      <guid>/publication/zhang-2018/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Automated Protocol Specialization and Diversification for Individualized Defense</title>
      <link>/funding/onr-18-protocol/</link>
      <pubDate>Wed, 01 Aug 2018 00:00:00 +0000</pubDate>
      <guid>/funding/onr-18-protocol/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Teaching</title>
      <link>/teaching/</link>
      <pubDate>Thu, 28 Jun 2018 00:00:00 +0100</pubDate>
      <guid>/teaching/</guid>
      <description>&lt;div class=&#34;alert alert-note&#34;&gt;
  &lt;div&gt;
    This page is being revamped with all links temporarily removed. Please check back in the fall.
  &lt;/div&gt;
&lt;/div&gt;
&lt;ul&gt;
&lt;li&gt;CY 5130/3740 Systems Security (Fall 2020)&lt;/li&gt;
&lt;li&gt;CS 7775 Special Topics on Advanced Systems Security (Spring 2020)&lt;/li&gt;
&lt;li&gt;CY 5130/3740 Systems Security (Fall 2019)&lt;/li&gt;
&lt;li&gt;CS 3700 Networks and Distributed Systems (Fall 2018)&lt;/li&gt;
&lt;li&gt;CS 3740 Systems Security (Spring 2018)&lt;/li&gt;
&lt;li&gt;CS 7775 Special Topics on Advanced Systems Security (Fall 2017)&lt;/li&gt;
&lt;li&gt;CSE 331 Computer Security Fundamentals (Fall 2016, Stony Brook)&lt;/li&gt;
&lt;li&gt;ISE 331 Computer Security (Spring 2016, Stony Brook)&lt;/li&gt;
&lt;li&gt;CSE 408 Network Security (Spring 2015, Stony Brook)&lt;/li&gt;
&lt;li&gt;CSE 509 Computer System Security (Fall 2014, Stony Brook)&lt;/li&gt;
&lt;li&gt;CSE 508 Network Security (Spring 2014, Stony Brook)&lt;/li&gt;
&lt;li&gt;CSE 608 Advanced Computer Security (Fall 2013, Stony Brook)&lt;/li&gt;
&lt;/ul&gt;
</description>
    </item>
    
    <item>
      <title>VButton: Practical Attestation of User-driven Operations in Mobile Apps</title>
      <link>/publication/li-2018/</link>
      <pubDate>Fri, 01 Jun 2018 00:00:00 +0000</pubDate>
      <guid>/publication/li-2018/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Compiler-assisted Code Randomization and Hardening</title>
      <link>/publication/koo-2018/</link>
      <pubDate>Tue, 01 May 2018 00:00:00 +0000</pubDate>
      <guid>/publication/koo-2018/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Enabling Secure Integration of Web and Mobile: A Principled Multi-Level Approach</title>
      <link>/funding/aro-16-webview/</link>
      <pubDate>Thu, 01 Feb 2018 00:00:00 +0000</pubDate>
      <guid>/funding/aro-16-webview/</guid>
      <description></description>
    </item>
    
    <item>
      <title>InstaGuard: Instantly Deployable Hot-patches for Vulnerable System Programs on Android</title>
      <link>/publication/chen-2018/</link>
      <pubDate>Mon, 01 Jan 2018 00:00:00 +0000</pubDate>
      <guid>/publication/chen-2018/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Multi-layer Software Transformation for Attack Surface Reduction and Shielding</title>
      <link>/funding/onr-17-software/</link>
      <pubDate>Fri, 01 Sep 2017 00:00:00 +0000</pubDate>
      <guid>/funding/onr-17-software/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Norax: Enabling Execute-Only Memory for COTS Binaries on AArch64</title>
      <link>/publication/chen-2017/</link>
      <pubDate>Mon, 01 May 2017 00:00:00 +0000</pubDate>
      <guid>/publication/chen-2017/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Secure Integration of Web Content and Applications on Commodity Mobile Operating Systems</title>
      <link>/publication/wireframe/</link>
      <pubDate>Sat, 01 Apr 2017 00:00:00 +0000</pubDate>
      <guid>/publication/wireframe/</guid>
      <description></description>
    </item>
    
    <item>
      <title>CAREER: Rethinking Mobile Security in the New Age of App-as-a-Platform</title>
      <link>/funding/nsf-17-career/</link>
      <pubDate>Wed, 01 Mar 2017 00:00:00 +0000</pubDate>
      <guid>/funding/nsf-17-career/</guid>
      <description></description>
    </item>
    
    <item>
      <title>ReARM: Protecting ARM Binaries via Load-time Reduction and Run-time Read-Protection</title>
      <link>/funding/onr-17-rearm/</link>
      <pubDate>Wed, 01 Mar 2017 00:00:00 +0000</pubDate>
      <guid>/funding/onr-17-rearm/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Where is the Weakest Link? A Study on Security Discrepancies between Android Apps and Their Website Counterparts</title>
      <link>/publication/pam-17/</link>
      <pubDate>Wed, 01 Mar 2017 00:00:00 +0000</pubDate>
      <guid>/publication/pam-17/</guid>
      <description></description>
    </item>
    
    <item>
      <title>CASE: Comprehensive Application Security Enforcement on COTS Mobile Devices</title>
      <link>/publication/zhu-16/</link>
      <pubDate>Wed, 01 Jun 2016 00:00:00 +0000</pubDate>
      <guid>/publication/zhu-16/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Shreds: Fine-grained Execution Units with Private Memory</title>
      <link>/publication/chen-2016/</link>
      <pubDate>Sun, 01 May 2016 00:00:00 +0000</pubDate>
      <guid>/publication/chen-2016/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Remix: On-demand Live Randomization</title>
      <link>/publication/remix/</link>
      <pubDate>Tue, 01 Mar 2016 00:00:00 +0000</pubDate>
      <guid>/publication/remix/</guid>
      <description></description>
    </item>
    
    <item>
      <title>WebCapsule: Towards a Lightweight Forensic Engine for Web Browsers</title>
      <link>/publication/neasbitt-15/</link>
      <pubDate>Sun, 01 Nov 2015 00:00:00 +0000</pubDate>
      <guid>/publication/neasbitt-15/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Cross-application and Cross-platform Tracking of Web Users: Techniques and Countermeasures</title>
      <link>/funding/nsf-15-tracking/</link>
      <pubDate>Tue, 01 Sep 2015 00:00:00 +0000</pubDate>
      <guid>/funding/nsf-15-tracking/</guid>
      <description></description>
    </item>
    
    <item>
      <title>MALDIVES: Developing a Comprehensive Understanding of Malware Delivery Mechanisms</title>
      <link>/funding/nsf-15-maldives/</link>
      <pubDate>Tue, 01 Sep 2015 00:00:00 +0000</pubDate>
      <guid>/funding/nsf-15-maldives/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Software Diversification for Attack Prevention and Forecasting</title>
      <link>/funding/onr-15-diverse/</link>
      <pubDate>Wed, 01 Jul 2015 00:00:00 +0000</pubDate>
      <guid>/funding/onr-15-diverse/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Checking More and Alerting Less: Detecting Privacy Leakages via Enhanced Data-flow Analysis and Peer Voting</title>
      <link>/publication/lu-2015/</link>
      <pubDate>Thu, 01 Jan 2015 00:00:00 +0000</pubDate>
      <guid>/publication/lu-2015/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Preventing Use-after-free with Dangling Pointers Nullification</title>
      <link>/publication/lee-2015/</link>
      <pubDate>Thu, 01 Jan 2015 00:00:00 +0000</pubDate>
      <guid>/publication/lee-2015/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Enabling Secure and Trustworthy Compartments in Mobile Applications</title>
      <link>/funding/nsf-14-struct/</link>
      <pubDate>Fri, 01 Aug 2014 00:00:00 +0000</pubDate>
      <guid>/funding/nsf-14-struct/</guid>
      <description></description>
    </item>
    
    <item>
      <title>From Zygote to Morula: Fortifying Weakened ASLR on Android</title>
      <link>/publication/lee-2014/</link>
      <pubDate>Wed, 01 Jan 2014 00:00:00 +0000</pubDate>
      <guid>/publication/lee-2014/</guid>
      <description></description>
    </item>
    
    <item>
      <title>A Static Approach to Vetting Vulnerable Android Apps</title>
      <link>/funding/afrl-13/</link>
      <pubDate>Tue, 01 Oct 2013 00:00:00 +0000</pubDate>
      <guid>/funding/afrl-13/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Jekyll  on iOS: When Benign Apps Become Evil</title>
      <link>/publication/wang-2013/</link>
      <pubDate>Tue, 01 Jan 2013 00:00:00 +0000</pubDate>
      <guid>/publication/wang-2013/</guid>
      <description></description>
    </item>
    
    <item>
      <title>CHEX: statically vetting Android apps for component hijacking vulnerabilities</title>
      <link>/publication/lu-2012-csv-2382196-2382223/</link>
      <pubDate>Sun, 01 Jan 2012 00:00:00 +0000</pubDate>
      <guid>/publication/lu-2012-csv-2382196-2382223/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Robust Scareware Image Detection</title>
      <link>/publication/seifertrobust/</link>
      <pubDate>Sun, 01 Jan 2012 00:00:00 +0000</pubDate>
      <guid>/publication/seifertrobust/</guid>
      <description></description>
    </item>
    
    <item>
      <title>SURF: detecting and measuring search poisoning</title>
      <link>/publication/lu-2011-sdm-2046707-2046762/</link>
      <pubDate>Sat, 01 Jan 2011 00:00:00 +0000</pubDate>
      <guid>/publication/lu-2011-sdm-2046707-2046762/</guid>
      <description></description>
    </item>
    
    <item>
      <title>BLADE: an attack-agnostic approach for preventing drive-by malware infections</title>
      <link>/publication/lu-2010-baa-1866307-1866356/</link>
      <pubDate>Fri, 01 Jan 2010 00:00:00 +0000</pubDate>
      <guid>/publication/lu-2010-baa-1866307-1866356/</guid>
      <description></description>
    </item>
    
    <item>
      <title>Mapping kernel objects to enable systematic integrity checking</title>
      <link>/publication/carbone-2009-mko-1653662-1653729/</link>
      <pubDate>Thu, 01 Jan 2009 00:00:00 +0000</pubDate>
      <guid>/publication/carbone-2009-mko-1653662-1653729/</guid>
      <description></description>
    </item>
    
    <item>
      <title>students</title>
      <link>/students/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/students/</guid>
      <description></description>
    </item>
    
  </channel>
</rss>
