軟體安全實驗室

SOftware SECURITY LAbORATORY

The MIS DEpartment, National Chengchi University

 
 

The Software Security Laboratory (SoSLab, pronounced so-slab) at NCCU is led by Dr. Fang Yu.  General research interests of SoSLab span the areas of security, verification, and program analysis techniques with the aim of improving the correctness and reliability of software. Our goal is to investigate formal techniques and develop practical tools for system developers who made SOS (Secure Our Software) calls. Our current research addresses Web/Cloud/App security and vulnerabilities.


 

Fang Yu: Welcome to SoSLab@NCCU

Be alert to the surroundings.

You might be shocked when you explore the risk of software applications.


News

[Publication] The paper: AppBeach: Characterizing App Behaviors via Static Binary Analysis has been accepted by the IEEE 2nd International Conference on Mobile Services (MS 2013). Santa Clara, U.S.

[Publication] The paper: Clustering iOS Executable Using Self-Organization Maps has been accepted by the 2013 International joint Conference on Neural Networks (IJCNN 2013). Dallas, U.S. (joint work with Hsin-Yin Huang and Prof. Rua-Huan Tsaih)

[Publication] The paper: Quantitative Analysis of Cloud-based Streaming Services has been accepted by the IEEE 10th International Conference on Services Computing (SCC 2013). Santa Clara, U.S. (joint work with Prof. Yat-Wah Wan and Prof. Rua-Huan Tsaih)

[Publication] The paper: A Control Policy for a Subclass of Petri Nets without Reachability Analysis has been accepted to be published in the IET Control Theory and Applications (SCI). (joint work with Gaiyun Liu and Prof. Daniel Yuh Chao)

[Award] Tim Chen, Kai-Chung Hsiao, Hsun-Yao Chen, Yuan-Jie Lee, Hao-Wen Sheng won the first prize of the MIS project competition, NCCU, Dec. 2012. [news] [ctitv][app]

[Publication] The paper: Innovation on Localized Information Exchange: the Services and their Implementation has been accepted by the 2012 International Conference on Innovation Studies (IS 2012), Taipei, Twain.

[Publication] The paper: The Dual Approach for Decision Making has been accepted by DSI 2012, San Francisco. (joint work with Hsin-Yin Huang and Prof. Rua-Huan Tsaih)

[Summer Intern] Steven Tai@TSMC, Sheng-Wei Lee@IBM, Yuan-Jie Li@KPMG (awarded the NSC student project)

[Presentation] Dr. Fang Yu gave an invited talk on Patching Vulnerabilities with Sanitization Synthesis at the Institute of Software, Chinese Academy of Sciences, Beijing, June, 2012. 

[Publication] The paper: Symbolic Consistency Checking of OpenMP Parallel Programs has been accepted by ACM LCTES 2012. (joint work with Prof. Farn Wang and Shun-Chin Yang)

[Presentation] Steven Tai and Yang Dong present “AppBeach” and “Patcher” in WAVAS 2012.

[Publication] The paper: Enumeration of Reachable and Other States of Simple Version of Systems of Simple Sequential Processes with Resources  (S3PR) has been accepted by IEEE ISIE 2012. (joint work with Prof. Daniel Y. Chao, and Hung-Yi Chen)

[Journal Publication] The paper: A Novel Liveness Condition for S3PGR2 has been published by SAGE TIM. (joint work with Prof. Daniel Y. Chao and Jiun-Ting Chen)

[Journal Publication] The full-version paper: Relational String Verification Using Multi-track Automata has been published by IJFCS.

[Publication] EPTCS 73: Proceedings of the 13th International Worksop on Verification of Infinite State Systems, Taipei, Taiwan, Oct. 2011

[Publication] The paper: Number of Reachable States for Simple Classes of Petri Nets has been accepted by IEEE IECON 2011. (joint work with Prof. Daniel Y. Chao)

[App@store] MAPost: An App for localized information (Online)

[Publication] The paper: A Temporal Logic for the Interaction of Strategies has been accepted by CONCUR 2011. (joint work with Prof. Farn Wang and Chung-Hao Huang)

[Publication] The paper: String Abstractions for String Verification has been accepted by SPIN 2011.

[Lecture] Formosan Summer School on Logic, Language, and Computation (FLOLAC 2011). [Slides]

[Publication] The paper: Patching Vulnerabilities with Sanitization Synthesis has been accepted by ICSE 2011.

[Award] Dr. Yu’s Dissertation has been nominated to 2010 ACM Doctoral Dissertation Award by UCSB. [Dissertation] [Slides]

[Tool] The string analysis tool: StrAnGer can be downloaded from here (by vlab@ucsb).

ASE Submission in

Conference Deadline:

ASE 2013       May 17

HICSS 2014   June 15

ICSE 2014      Sep. 13

TACAS 2014  Oct. 11

soslab

Links