• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Home
  • People
  • News
  • Research
  • Publications
  • Releases
  • Resources
  • Contact Us

SUCCESS Lab

SUCCESS Lab

Texas A&M University College of Engineering

News

New web security research to appear in DSN’26

Posted on April 20, 2026 by guofei

Our new paper on “Demystifying Progressive Web Application Permission Systems” is going to appear in DSN’26! Progressive Web Applications (PWAs) are web-based applications that bring native-app features such as offline access, notifications, and installability to the browser, making them an increasingly important part of today’s web ecosystem. In this work, we developed Permissioner to systematically analyze permission handling in PWAs and uncovered numerous security issues of inconsistency, incompleteness, and unclear boundaries in permission enforcement, with concrete cases of permission leakage, across browsers and platforms. Our findings have already led to fixes in Firefox and a Chromium patch, highlighting the urgent need for a unified and robust PWA permission model.

Congratulations, Mengxiao & Jianwei!

Filed Under: Publication, Research

New 5G security research “CONSET” to appear in USENIX Security’26

Posted on December 20, 2025 by guofei

Our new research CONSET (“Semantics Over Syntax: Uncovering Pre-Authentication 5G Baseband Vulnerabilities”) will appear in USENIX Security’26. This work leverages LLM and builds a new framework CONSET, which systematically extracts specification-level constraints and turns them into semantic violations for testing 5G UE implementations. On commercial smartphones, it confirms 6 device-level flaws through responsible disclosure, including 3 high-severity CVEs. These vulnerabilities affect 41 chipset models and over 466 commercially available smartphones.

This is joint work with researchers (Prof. Hongxin Hu and his students) at University of Buffalo. Congratulations on the amazing work, Qiqing!

Filed Under: Publication, Research

New software-defined programmable security research “Heracles” to appear in NDSS’26

Posted on December 10, 2025 by guofei

Our new research Heracles (“𝑶𝒏 𝒕𝒉𝒆 𝑺𝒆𝒄𝒖𝒓𝒊𝒕𝒚 𝑹𝒊𝒔𝒌𝒔 𝒐𝒇 𝑴𝒆𝒎𝒐𝒓𝒚 𝑨𝒅𝒂𝒑𝒕𝒂𝒕𝒊𝒐𝒏 𝒂𝒏𝒅 𝑨𝒖𝒈𝒎𝒆𝒏𝒕𝒂𝒕𝒊𝒐𝒏 𝒊𝒏 𝑫𝒂𝒕𝒂-𝒑𝒍𝒂𝒏𝒆 𝑫𝒐𝑺 𝑴𝒊𝒕𝒊𝒈𝒂𝒕𝒊𝒐𝒏”) will appear in NDSS’26. This work examines emerging security risks in modern programmable network infrastructures and highlights how design choices for efficiency can introduce new attack surfaces. We further propose Shield , a multi-layered mitigation scheme that successfully mitigates the Heracles attack while preserving line-rate performance and adaptive detection accuracy.

This is joint work with researchers (Prof. Min Suk Kang and his students) at KAIST. Congratulations on the amazing work, Hocheol! And thank you for spending time with us at the SUCCESS Lab as a visiting student in 2025!

Filed Under: Publication, Research

Nathan has successfully defended his MS thesis!

Posted on October 6, 2025 by guofei

Nathan Mcclaran has successfully defended his master thesis “”ALEXA, IS DYNAMIC CONTENT SAFE?” UNDERSTANDING THE RISKS OF DYNAMIC CONTENT IN THE ALEXA SKILL ECOSYSTEM” today! He is currently working at Viasat.

Big congratulations, Nathan!

Filed Under: People

Shreyas has successfully defended his PhD thesis!

Posted on September 18, 2025 by guofei

Shreyas has successfully defended his PhD thesis “The Success Framework for SMB: Bridging Perceptions, Incentives, And Trust For Usable Cybersecurity” today! He is now working as a professor of practice at the CSE department of Texas A&M University.

Big Congratulations, Shreyas!

Filed Under: People

Texas A&M Team (led by Jeff) won the 4th place in DARPA AIxCC competition!

Posted on September 10, 2025 by guofei

Our team, “All You Need Is A Fuzzing Brain”, led by Jeff, was one of seven finalists in DARPA’s Artificial Intelligence Cyber Challenge (AIxCC), placing 4th in the final round. During the competition, we developed a Cyber Reasoning System (CRS) that autonomously discovered 28 security vulnerabilities—including six previously unknown zero-days—in real-world open-source C and Java projects, and successfully patched 14 of them. A technical report is available here. The complete CRS is open source at here.

Big congratulations to the whole team, particularly Jeff and all TAMU students (Ze, Qingxiao, Jianwei, Matthew, etc)!

Filed Under: People, Release, Research

Winning Test of Time Award at DSN’25

Posted on June 24, 2025 by guofei

Our DSN’15 paper “FloodGuard: A DoS Attack Prevention Extension in Software-Defined Networks” (by Haopei Wang, Lei Xu, Guofei Gu) received the Test of Time Award at this year’s DSN conference (2025 Annual IEEE/IFIP International Conference on Dependable Systems and Networks)! We are so honored and humbled to receive this recognition for our SDN security research in 2015! Congratulations again, Haopei & Lei!

Some background information about this award: “The Test-of-Time Award recognizes two outstanding papers published 10 years ago at DSN, in the DSN proceedings (research track, practical experience report or tool papers), that have had a sustained and important impact on the theory and/or practice of dependable systems and networks computing research. DSN has several areas under its umbrella and with two awards there are conditions to recognize more than one area. In exceptional situations (not enough nominations), the time frame for awards can be extended to 10-12 years, and only one paper can be awarded, in this order.”

Filed Under: Publication, Research

“Alexa, Is Dynamic Content Safe?” – New paper to appear in WiSec’25

Posted on May 12, 2025 by guofei

Our new paper on understanding the risks of dynamic content in the Alexa skill ecosystem is going to appear in ACM WiSec’25! Congratulations, Nathan!

Filed Under: Publication, Research

Two papers on human-centered security research to appear in Euro S&P’25

Posted on April 5, 2025 by guofei

Shreyas has two papers on human-centered security research to appear in Euro S&P’25! They are “Demystifying the Perceptions Gap Between Designers and Practitioners in Two Security Standards” and “Incentivizing Security Excellence in Cyber Liability Insurance”. Congratulations, Shreyas!

Filed Under: Publication, Research

New Web3 research on ENS security to appear in WWW’25

Posted on January 25, 2025 by guofei

Our paper “Beyond Visual Confusion: Understanding How Inconsistencies in ENS Normalization Facilitate Homoglyph Attacks” is accepted to WWW’25. Congratulations, Jianwei!

Filed Under: Publication, Research

  • 1
  • Go to page 2
  • Go to page 3
  • Interim page numbers omitted …
  • Go to page 5
  • Go to Next Page »

What’s New?

  • New web security research to appear in DSN’26 April 20, 2026
  • New 5G security research “CONSET” to appear in USENIX Security’26 December 20, 2025
  • New software-defined programmable security research “Heracles” to appear in NDSS’26 December 10, 2025
  • Nathan has successfully defended his MS thesis! October 6, 2025
  • Shreyas has successfully defended his PhD thesis! September 18, 2025

© 2016–2026 SUCCESS Lab Log in

Texas A&M Engineering Experiment Station Logo
  • Opportunities
  • Prof. Gu’s Personal Website
  • Department of Computer Science & Engineering