이화여대 정보보호연구실에서는 학부생 인턴, 석사, 박사, 석박사 통합과정 학생들을 모집하고 있습니다. AI/딥러닝 기반 보안, 네트워크/시스템 보안, 블록체인 등에 관심있는 학생들은 nyang@ewha.ac.kr로 연락바랍니다. (혹은 연구실 랩장 김시안 ksy60a@gmail.com 에게 연락 주세요)

We always welcome students who are interested in research on AI/Deep-Learning-based security and network/system security. If you are interested in joining our lab to continue study, don’t hesitate to contact me at nyang@ewha.ac.kr. (or you can contact Laboratory Manager: Sian Kim, ksy60a@gmail.com)

Another big news. Our paper titled “A Robust Counting Sketch for Data Plane Intrusion Detection”, proposing Count-Less, is accepted in NDSS 2023! This paper is part of the series of works that our group has been pursuing on data sketch for traffic measurement and security applications. Count-Less is a major variation of the famous Count-Min sketch, but is more robust in terms of measurement accuracy under a various traffic distributions, including attack traffic. The design of the sketch is lightweight enough to fit in the packet processing pipeline and sketch’s performance is shown to be superior to state-of-the-art algorithms, such as Elastic sketch and FCM by comprehensive experiments.

 

Congratulations to Sian, Changhun, Rhongho, David, and me!

Kichang Yang at Hyundai motor company gave a talk on vehicular security in cyber security department’s weekly colloquium at Ewha. His talk showed many interesting vehicular security issues as well as what to do to become a vehicular security engineer. It must be very helpful to young students as a career guidance. He has been leading a security group as a director of security division in HMC since 2016. His group is working on all aspects of vehicular security like hacking, reproducing reported vulnerabilities, regulations, and what not. We got to understand what are the issues in vehicular security, career path, and even how to do a good interview.

Every week, we will have an invited talk about various issues in security!

I am pleased to announce that Dr. Changhun Jung starts his career as a researcher at R&D center of Hyundai Motor Company.

He obtained M.S. and PhD degree in 2017 and 2022, respectively in my lab. His main research interests are authentication, network security, data plane security, AI-based attack detection, data structure and algorithm for high performance switch architecture. During his study, he published eight papers in top venues such as ICASSP (2018), AAAI AI for Social Good (2019), Computers and Security (2021), BMC Medical Imaging (2022), IEEE/IFIP DSN (2022), IEEE TMC (to appear), ACM CCS (2022), and NDSS (2023). He is one of the most earnest students in pursuing research goals I have ever seen, and I was able to get through a lot of difficulties we met during our research work owing to his earnest endeavors. Even though he is leaving us, we are going to collaborate on further research works.

Congratulations again to Changhun!

I am pleased to share that our paper “A Scalable and Dynamic ACL System for In-Network Defense” (named PortCatcher) is accepted in CCS 2022! A big achievement of our research group.

Summary by David: This work addresses the scalability of dynamic ACL systems through an elegant combination of algorithmic optimization and new architectural design that exploits SRAM instead of TCAM for ACL storage. The work is implemented in P4 and this coupling allows us to process packets at the line speed, even for orders of magnitude growth in size of the ACL in contrast to TCAM-based approach.

Congratulations to Changhun Jung, Sian Kim, Rhongho Jang, David Mohaisen, and Me.

More news will come soon. 😉

I am pleased to announce that our paper “Systematically Evaluating the Robustness of ML-based IoT Malware Detection Systems” authored by A. Abusnaina, A. Anwar, S. Alshamrani, A. Alabduljabbar, R. Jang, D. Nyang, D. Mohaisen is accepted (just passed the shepherding) in the 25th International Symposium on Research in Attacks, Intrusions and Defenses (RAID 2022).

This paper deals with the issue on the performance of ML-based IoT malware detectors against malware mutations. Results show that even the state-of-the-art technologies are suffering from incompetence in detecting even simple mutations like functionality-preserving operations (packing, stripping, and padding). This calls for research community to put their efforts towards testing the robustness of malware detectors.

 

Congratulations to all!

Our paper titled “WBC image classification and generative models based on convolutional neural network” is published in BMC Medical Imaging journal.This paper deals with the white blood cell classification and the synthesis of the images. Our AI model based on the simple CNN, called W-Net outperforms the famous AlexNet, VGGNet, and ResNet50/18 by far in terms of accuracy and computation complexity. We explore why this simple architecture works better than those state-of-the-art technologies for WBC classification. Also, it is well-known to be quite difficult to obtain high quality WBC images with labels even for research purporses, and thus, we release the high quality synthesized WBC images generated from real hospital WBC images to aid and expedite research in this area. Check out our paper.

Congratulations to ChangHun, Mohammed, David, KyungJa, and me!

“Minimizing Noise in HyperLogLog-Based Spread Estimation of Multiple Flows”

Congratulations to all of the authors, Nguyen, Jiyoo, Changhun, David!

Our paper on estimating the spreads of multiple flows is accepted at the 52nd Annual IEEE/IFIP International Conference on Dependable Systems and Networks(acceptance ratio=49/262). We proposed RRSE (Rank Recovery-based Spread Estimator), an algorithm on counting multiple spreaders on a programmable router, which is a multi-tenant version of the famous Hyper-LogLog. The importance of this paper is in the way to eliminate noise from HLL’s estimation when sharing a memory space with multiple flows.  RRSE shows greater noise reduction performance compared to vHLL, MCSE, state of the art algorithms.

 

Check out this presentation clip!

 

정보보호 연구실에서 프로그래밍 인턴(아르바이트) 학생을 모집합니다.

모집 인원: 서버(Python) 1명, 아이폰(Swift) 앱 1명, 안드로이드(Kotlin) 앱 1명

개발 기간: 10월부터

급여: 100만원/월

포트폴리오, 자기소개서와 함께 mizno.isrl@gmail.com로 메일 보내주세요.

https://www.theregister.com/2021/09/09/boffins_unveil_ssdinsider_promise_ransomware/

SSD-Insider (IEEE Trans on Computers) is on “The Register”, UK-based tech magazine!

You can take a look at the article titled “Boffins unveil SSD-Insider++, promise ransomware detection and recovery right in your storage” by Gareth Halfacree (Thank you Gareth!). Also, it is quite fun to read the readers’ comments in the article.

Also, ZDNet Korea interviewed me to introduce SSD-Insider, which can be found at

https://zdnet.co.kr/view/?no=20210916105104