Normalized Top-100 Security Papers

This webpage is an attempt to assemble a ranking of top-cited papers from the area of computer security. The ranking has been created based on citations of papers published at top security conferences. More details are available here.

Absolute citations are not necessarily a good indicator for the impact of a paper, as the number of citations usually grows with the age of a paper. The following list shows an alternative ranking, where the citations are normalized by the age of each paper.

Top 100 papers normalized by age ⌄

  1. 1
    Xinyue Shen, Zeyuan Chen, Michael Backes, Yun Shen, and Yang Zhang:
    "Do Anything Now": Characterizing and Evaluating In-The-Wild Jailbreak Prompts on Large Language Models.
    ACM Conference on Computer and Communications Security (CCS), 2024
    465 cites at Google Scholar
    10953% above average of year
    Visited: Mar-2025
    Paper: DOI
  2. 2
    Nicholas Carlini and David A. Wagner:
    Towards Evaluating the Robustness of Neural Networks.
    IEEE Symposium on Security and Privacy (S&P), 2017
    10830 cites at Google Scholar
    6999% above average of year
    Visited: Mar-2025
    Paper: DOI
  3. 3
    Jan Lauinger, Jens Ernstberger, Andreas Finkenzeller, and Sebastian Steinhorst:
    Janus: Fast Privacy-Preserving Data Provenance For TLS.
    Proceedings on Privacy Enhancing Technologies (PoPETS), 2025
    13 cites at Google Scholar
    5497% above average of year
    Visited: Jan-2025
    Paper: DOI
  4. 4
    Jayshree Sarathy and Salil P. Vadhan:
    Analyzing the Differentially Private Theil-Sen Estimator for Simple Linear Regression.
    Proceedings on Privacy Enhancing Technologies (PoPETS), 2025
    13 cites at Google Scholar
    5497% above average of year
    Visited: Mar-2025
    Paper: DOI
  5. 5
    Nicholas Carlini, Jamie Hayes, Milad Nasr, Matthew Jagielski, Vikash Sehwag, Florian Tramèr, Borja Balle, Daphne Ippolito, and Eric Wallace:
    Extracting Training Data from Diffusion Models.
    USENIX Security Symposium, 2023
    662 cites at Google Scholar
    4672% above average of year
    Visited: Mar-2025
    Paper: DOI
  6. 6
    Nicholas Carlini, Matthew Jagielski, Christopher A. Choquette-Choo, Daniel Paleka, Will Pearce, Hyrum S. Anderson, Andreas Terzis, Kurt Thomas, and Florian Tramèr:
    Poisoning Web-Scale Training Datasets is Practical.
    IEEE Symposium on Security and Privacy (S&P), 2024
    195 cites at Google Scholar
    4535% above average of year
    Visited: Feb-2025
    Paper: DOI
  7. 7
    Mihir Bellare and Phillip Rogaway:
    Random Oracles are Practical: A Paradigm for Designing Efficient Protocols.
    ACM Conference on Computer and Communications Security (CCS), 1993
    6729 cites at Google Scholar
    4481% above average of year
    Visited: Jan-2025
    Paper: DOI
  8. 8
    Martín Abadi, Andy Chu, Ian J. Goodfellow, H. Brendan McMahan, Ilya Mironov, Kunal Talwar, and Li Zhang:
    Deep Learning with Differential Privacy.
    ACM Conference on Computer and Communications Security (CCS), 2016
    7395 cites at Google Scholar
    4322% above average of year
    Visited: Feb-2025
    Paper: DOI
  9. 9
    Nicholas Carlini, Florian Tramèr, Eric Wallace, Matthew Jagielski, Ariel Herbert-Voss, Katherine Lee, Adam Roberts, Tom B. Brown, Dawn Song, Úlfar Erlingsson, Alina Oprea, and Colin Raffel:
    Extracting Training Data from Large Language Models.
    USENIX Security Symposium, 2021
    1878 cites at Google Scholar
    3999% above average of year
    Visited: Jan-2025
    Paper: DOI
  10. 10
    Vipul Goyal, Omkant Pandey, Amit Sahai, and Brent Waters:
    Attribute-based encryption for fine-grained access control of encrypted data.
    ACM Conference on Computer and Communications Security (CCS), 2006
    7343 cites at Google Scholar
    3886% above average of year
    Visited: Jan-2025
    Paper: DOI
  11. 11
    Cong Zuo, Shangqi Lai, Shi-Feng Sun, Xingliang Yuan, Joseph K. Liu, Jun Shao, Huaxiong Wang, Liehuang Zhu, and Shujie Cui:
    Searchable Encryption for Conjunctive Queries with Extended Forward and Backward Privacy.
    Proceedings on Privacy Enhancing Technologies (PoPETS), 2025
    9 cites at Google Scholar
    3775% above average of year
    Visited: Feb-2025
    Paper: DOI
  12. 12
    Reza Shokri, Marco Stronati, Congzheng Song, and Vitaly Shmatikov:
    Membership Inference Attacks Against Machine Learning Models.
    IEEE Symposium on Security and Privacy (S&P), 2017
    5449 cites at Google Scholar
    3472% above average of year
    Visited: Mar-2025
    Paper: DOI
  13. 13
    John Bethencourt, Amit Sahai, and Brent Waters:
    Ciphertext-Policy Attribute-Based Encryption.
    IEEE Symposium on Security and Privacy (S&P), 2007
    7119 cites at Google Scholar
    3262% above average of year
    Visited: Mar-2025
    Paper: DOI
  14. 14
    Paul Kocher, Jann Horn, Anders Fogh, Daniel Genkin, Daniel Gruss, Werner Haas, Mike Hamburg, Moritz Lipp, Stefan Mangard, Thomas Prescher, Michael Schwarz, and Yuval Yarom:
    Spectre Attacks: Exploiting Speculative Execution.
    IEEE Symposium on Security and Privacy (S&P), 2019
    3291 cites at Google Scholar
    3183% above average of year
    Visited: Feb-2025
    Paper: DOI
  15. 15
    Nicolas Papernot, Patrick D. McDaniel, Somesh Jha, Matt Fredrikson, Z. Berkay Celik, and Ananthram Swami:
    The Limitations of Deep Learning in Adversarial Settings.
    IEEE European Symposium on Security and Privacy (EuroS&P), 2016
    5120 cites at Google Scholar
    2961% above average of year
    Visited: Dec-2024
    Paper: DOI
  16. 16
    Stephanie Forrest, Alan S. Perelson, Lawrence Allen, and Rajesh Cherukuri:
    Self-nonself discrimination in a computer.
    IEEE Symposium on Security and Privacy (S&P), 1994
    3297 cites at Google Scholar
    2925% above average of year
    Visited: Mar-2025
    Paper: DOI
  17. 17
    Dawn Xiaodong Song, David A. Wagner, and Adrian Perrig:
    Practical Techniques for Searches on Encrypted Data.
    IEEE Symposium on Security and Privacy (S&P), 2000
    5210 cites at Google Scholar
    2922% above average of year
    Visited: Dec-2024
    Paper: DOI
  18. 18
    D. F. C. Brewer and Michael J. Nash:
    The Chinese Wall Security Policy.
    IEEE Symposium on Security and Privacy (S&P), 1989
    1528 cites at Google Scholar
    2910% above average of year
    Visited: Mar-2025
    Paper: DOI
  19. 19
    Nicolas Papernot, Patrick D. McDaniel, Ian J. Goodfellow, Somesh Jha, Z. Berkay Celik, and Ananthram Swami:
    Practical Black-Box Attacks against Machine Learning.
    ACM Asia Conference on Computer and Communications Security (AsiaCCS), 2017
    4481 cites at Google Scholar
    2837% above average of year
    Visited: Mar-2025
    Paper: DOI
  20. 20
    Gelei Deng, Yi Liu, Yuekang Li, Kailong Wang, Ying Zhang, Zefeng Li, Haoyu Wang, Tianwei Zhang, and Yang Liu:
    MASTERKEY: Automated Jailbreaking of Large Language Model Chatbots.
    Network and Distributed System Security Symposium (NDSS), 2024
    122 cites at Google Scholar
    2800% above average of year
    Visited: Feb-2025
    Paper: DOI
  21. 21
    Yixin Wu, Yun Shen, Michael Backes, and Yang Zhang:
    Image-Perfect Imperfections: Safety, Bias, and Authenticity in the Shadow of Text-To-Image Model Evolution.
    ACM Conference on Computer and Communications Security (CCS), 2024
    118 cites at Google Scholar
    2705% above average of year
    Visited: Feb-2025
    Paper: DOI
  22. 22
    Roger Dingledine, Nick Mathewson, and Paul F. Syverson:
    Tor: The Second-Generation Onion Router.
    USENIX Security Symposium, 2004
    6213 cites at Google Scholar
    2515% above average of year
    Visited: Jan-2025
    Paper: DOI
  23. 23
    Matt Fredrikson, Somesh Jha, and Thomas Ristenpart:
    Model Inversion Attacks that Exploit Confidence Information and Basic Countermeasures.
    ACM Conference on Computer and Communications Security (CCS), 2015
    3480 cites at Google Scholar
    2459% above average of year
    Visited: Dec-2024
    Paper: DOI
  24. 24
    Ruijie Meng, Martin Mirchev, Marcel Böhme, and Abhik Roychoudhury:
    Large Language Model guided Protocol Fuzzing.
    Network and Distributed System Security Symposium (NDSS), 2024
    106 cites at Google Scholar
    2420% above average of year
    Visited: Feb-2025
    Paper: DOI
  25. 25
    Nicholas Carlini, Steve Chien, Milad Nasr, Shuang Song, Andreas Terzis, and Florian Tramèr:
    Membership Inference Attacks From First Principles.
    IEEE Symposium on Security and Privacy (S&P), 2022
    668 cites at Google Scholar
    2360% above average of year
    Visited: Dec-2024
    Paper: DOI
  26. 26
    Steven M. Bellovin and Michael Merritt:
    Encrypted key exchange: password-based protocols secure against dictionary attacks.
    IEEE Symposium on Security and Privacy (S&P), 1992
    2264 cites at Google Scholar
    2343% above average of year
    Visited: Jan-2025
    Paper: DOI
  27. 27
    Nicolas Papernot, Patrick D. McDaniel, Xi Wu, Somesh Jha, and Ananthram Swami:
    Distillation as a Defense to Adversarial Perturbations Against Deep Neural Networks.
    IEEE Symposium on Security and Privacy (S&P), 2016
    3955 cites at Google Scholar
    2265% above average of year
    Visited: Jan-2025
    Paper: DOI
  28. 28
    Hammond Pearce, Benjamin Tan, Baleegh Ahmad, Ramesh Karri, and Brendan Dolan-Gavitt:
    Examining Zero-Shot Vulnerability Repair with Large Language Models.
    IEEE Symposium on Security and Privacy (S&P), 2023
    323 cites at Google Scholar
    2229% above average of year
    Visited: Feb-2025
    Paper: DOI
  29. 29
    Kallista A. Bonawitz, Vladimir Ivanov, Ben Kreuter, Antonio Marcedone, H. Brendan McMahan, Sarvar Patel, Daniel Ramage, Aaron Segal, and Karn Seth:
    Practical Secure Aggregation for Privacy-Preserving Machine Learning.
    ACM Conference on Computer and Communications Security (CCS), 2017
    3519 cites at Google Scholar
    2207% above average of year
    Visited: Jan-2025
    Paper: DOI
  30. 30
    Arvind Narayanan and Vitaly Shmatikov:
    Robust De-anonymization of Large Sparse Datasets.
    IEEE Symposium on Security and Privacy (S&P), 2008
    3550 cites at Google Scholar
    2155% above average of year
    Visited: Feb-2025
    Paper: DOI
  31. 31
    Reza Shokri and Vitaly Shmatikov:
    Privacy-Preserving Deep Learning.
    ACM Conference on Computer and Communications Security (CCS), 2015
    2954 cites at Google Scholar
    2072% above average of year
    Visited: Feb-2025
    Paper: DOI
  32. 32
    Ghous Amjad, Kevin Yeo, and Moti Yung:
    RSA Blind Signatures with Public Metadata.
    Proceedings on Privacy Enhancing Technologies (PoPETS), 2025
    5 cites at Google Scholar
    2053% above average of year
    Visited: Mar-2025
    Paper: DOI
  33. 33
    Ismat Jarin, Yu Duan, Rahmadi Trimananda, Hao Cui, Salma Elmalaki, and Athina Markopoulou:
    BehaVR: User Identification Based on VR Sensor Data.
    Proceedings on Privacy Enhancing Technologies (PoPETS), 2025
    5 cites at Google Scholar
    2053% above average of year
    Visited: Feb-2025
    Paper: DOI
  34. 34
    Yao Liu, Michael K. Reiter, and Peng Ning:
    False data injection attacks against state estimation in electric power grids.
    ACM Conference on Computer and Communications Security (CCS), 2009
    3877 cites at Google Scholar
    2035% above average of year
    Visited: Feb-2025
    Paper: DOI
  35. 35
    Vern Paxson:
    Bro: A System for Detecting Network Intruders in Real-Time.
    USENIX Security Symposium, 1998
    4119 cites at Google Scholar
    1991% above average of year
    Visited: Jan-2025
    Paper: DOI
  36. 36
    Matt Blaze, Joan Feigenbaum, and Jack Lacy:
    Decentralized Trust Management.
    IEEE Symposium on Security and Privacy (S&P), 1996
    3465 cites at Google Scholar
    1982% above average of year
    Visited: Feb-2025
    Paper: DOI
  37. 37
    Laurent Eschenauer and Virgil D. Gligor:
    A key-management scheme for distributed sensor networks.
    ACM Conference on Computer and Communications Security (CCS), 2002
    5570 cites at Google Scholar
    1949% above average of year
    Visited: Mar-2025
    Paper: DOI
  38. 38
    Xinlei He, Xinyue Shen, Zeyuan Chen, Michael Backes, and Yang Zhang:
    MGTBench: Benchmarking Machine-Generated Text Detection.
    ACM Conference on Computer and Communications Security (CCS), 2024
    85 cites at Google Scholar
    1920% above average of year
    Visited: Jan-2025
    Paper: DOI
  39. 39
    Daniel Arp, Michael Spreitzenbarth, Malte Hubner, Hugo Gascon, and Konrad Rieck:
    DREBIN: Effective and Explainable Detection of Android Malware in Your Pocket.
    Network and Distributed System Security Symposium (NDSS), 2014
    2941 cites at Google Scholar
    1914% above average of year
    Visited: Jan-2025
    Paper: DOI
  40. 40
    Ahmed E. Kosba, Andrew Miller, Elaine Shi, Zikai Wen, and Charalampos Papamanthou:
    Hawk: The Blockchain Model of Cryptography and Privacy-Preserving Smart Contracts.
    IEEE Symposium on Security and Privacy (S&P), 2016
    3268 cites at Google Scholar
    1854% above average of year
    Visited: Dec-2024
    Paper: DOI
  41. 41
    Giuseppe Ateniese, Randal C. Burns, Reza Curtmola, Joseph Herring, Lea Kissner, Zachary N. J. Peterson, and Dawn Xiaodong Song:
    Provable data possession at untrusted stores.
    ACM Conference on Computer and Communications Security (CCS), 2007
    4099 cites at Google Scholar
    1836% above average of year
    Visited: Dec-2024
    Paper: DOI
  42. 42
    Minghong Fang, Xiaoyu Cao, Jinyuan Jia, and Neil Zhenqiang Gong:
    Local Model Poisoning Attacks to Byzantine-Robust Federated Learning.
    USENIX Security Symposium, 2020
    1299 cites at Google Scholar
    1830% above average of year
    Visited: Jan-2025
    Paper: DOI
  43. 43
    Lucas Bourtoule, Varun Chandrasekaran, Christopher A. Choquette-Choo, Hengrui Jia, Adelin Travers, Baiwu Zhang, David Lie, and Nicolas Papernot:
    Machine Unlearning.
    IEEE Symposium on Security and Privacy (S&P), 2021
    881 cites at Google Scholar
    1823% above average of year
    Visited: Jan-2025
    Paper: DOI
  44. 44
    Reza Curtmola, Juan A. Garay, Seny Kamara, and Rafail Ostrovsky:
    Searchable symmetric encryption: improved definitions and efficient constructions.
    ACM Conference on Computer and Communications Security (CCS), 2006
    3525 cites at Google Scholar
    1813% above average of year
    Visited: Mar-2025
    Paper: DOI
  45. 45
    Li Gong, Roger M. Needham, and Raphael Yahalom:
    Reasoning about Belief in Cryptographic Protocols.
    IEEE Symposium on Security and Privacy (S&P), 1990
    1057 cites at Google Scholar
    1806% above average of year
    Visited: Feb-2025
    Paper: DOI
  46. 46
    Luca Melis, Congzheng Song, Emiliano De Cristofaro, and Vitaly Shmatikov:
    Exploiting Unintended Feature Leakage in Collaborative Learning.
    IEEE Symposium on Security and Privacy (S&P), 2019
    1896 cites at Google Scholar
    1792% above average of year
    Visited: Jan-2025
    Paper: DOI
  47. 47
    Stephanie Forrest, Steven A. Hofmeyr, Anil Somayaji, and Thomas A. Longstaff:
    A Sense of Self for Unix Processes.
    IEEE Symposium on Security and Privacy (S&P), 1996
    3106 cites at Google Scholar
    1766% above average of year
    Visited: Jan-2025
    Paper: DOI
  48. 48
    Alessandro Acquisti and Ralph Gross:
    Imagined Communities: Awareness, Information Sharing, and Privacy on the Facebook.
    International Symposium on Privacy Enhancing Technologies (PETS), 2006
    3424 cites at Google Scholar
    1758% above average of year
    Visited: Jan-2025
    Paper: DOI
  49. 49
    Eli Ben-Sasson, Alessandro Chiesa, Christina Garman, Matthew Green, Ian Miers, Eran Tromer, and Madars Virza:
    Zerocash: Decentralized Anonymous Payments from Bitcoin.
    IEEE Symposium on Security and Privacy (S&P), 2014
    2678 cites at Google Scholar
    1734% above average of year
    Visited: Dec-2024
    Paper: DOI
  50. 50
    Manos Antonakakis, Tim April, Michael D. Bailey, Matt Bernhard, Elie Bursztein, Jaime Cochran, Zakir Durumeric, J. Alex Halderman, Luca Invernizzi, Michalis Kallitsis, Deepak Kumar, Chaz Lever, Zane Ma, Joshua Mason, Damian Menscher, Chad Seaman, Nick Sullivan, Kurt Thomas, and Yi Zhou:
    Understanding the Mirai Botnet.
    USENIX Security Symposium, 2017
    2791 cites at Google Scholar
    1729% above average of year
    Visited: Feb-2025
    Paper: DOI
  51. 51
    Yajin Zhou and Xuxian Jiang:
    Dissecting Android Malware: Characterization and Evolution.
    IEEE Symposium on Security and Privacy (S&P), 2012
    3092 cites at Google Scholar
    1720% above average of year
    Visited: Nov-2024
    Paper: DOI
  52. 52
    Úlfar Erlingsson, Vasyl Pihur, and Aleksandra Korolova:
    RAPPOR: Randomized Aggregatable Privacy-Preserving Ordinal Response.
    ACM Conference on Computer and Communications Security (CCS), 2014
    2539 cites at Google Scholar
    1639% above average of year
    Visited: Mar-2025
    Paper: DOI
  53. 53
    Weilin Xu, David Evans, and Yanjun Qi:
    Feature Squeezing: Detecting Adversarial Examples in Deep Neural Networks.
    Network and Distributed System Security Symposium (NDSS), 2018
    2190 cites at Google Scholar
    1635% above average of year
    Visited: Jan-2025
    Paper: DOI
  54. 54
    Jeffrey O. Kephart and Steve R. White:
    Directed-Graph Epidemiological Models of Computer Viruses.
    IEEE Symposium on Security and Privacy (S&P), 1991
    1254 cites at Google Scholar
    1617% above average of year
    Visited: Mar-2025
    Paper: DOI
  55. 55
    Milad Nasr, Reza Shokri, and Amir Houmansadr:
    Comprehensive Privacy Analysis of Deep Learning: Passive and Active White-box Inference Attacks against Centralized and Federated Learning.
    IEEE Symposium on Security and Privacy (S&P), 2019
    1715 cites at Google Scholar
    1611% above average of year
    Visited: Dec-2024
    Paper: DOI
  56. 56
    Dorothy E. Denning:
    An Intrusion-Detection Model.
    IEEE Symposium on Security and Privacy (S&P), 1986
    6360 cites at Google Scholar
    1591% above average of year
    Visited: Mar-2025
    Paper: DOI
  57. 57
    Thomas Ristenpart, Eran Tromer, Hovav Shacham, and Stefan Savage:
    Hey, you, get off of my cloud: exploring information leakage in third-party compute clouds.
    ACM Conference on Computer and Communications Security (CCS), 2009
    3066 cites at Google Scholar
    1588% above average of year
    Visited: Jan-2025
    Paper: DOI
  58. 58
    Bolun Wang, Yuanshun Yao, Shawn Shan, Huiying Li, Bimal Viswanath, Haitao Zheng, and Ben Y. Zhao:
    Neural Cleanse: Identifying and Mitigating Backdoor Attacks in Neural Networks.
    IEEE Symposium on Security and Privacy (S&P), 2019
    1683 cites at Google Scholar
    1579% above average of year
    Visited: Jan-2025
    Paper: DOI
  59. 59
    Nils Lukas, Ahmed Salem, Robert Sim, Shruti Tople, Lukas Wutschitz, and Santiago Zanella Béguelin:
    Analyzing Leakage of Personally Identifiable Information in Language Models.
    IEEE Symposium on Security and Privacy (S&P), 2023
    231 cites at Google Scholar
    1565% above average of year
    Visited: Mar-2025
    Paper: DOI
  60. 60
    Zhiyuan Yu, Xiaogeng Liu, Shunning Liang, Zach Cameron, Chaowei Xiao, and Ning Zhang:
    Don't Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models.
    USENIX Security Symposium, 2024
    70 cites at Google Scholar
    1564% above average of year
    Visited: Mar-2025
    Paper: DOI
  61. 61
    Daniel Arp, Erwin Quiring, Feargus Pendlebury, Alexander Warnecke, Fabio Pierazzi, Christian Wressnegger, Lorenzo Cavallaro, and Konrad Rieck:
    Dos and Don'ts of Machine Learning in Computer Security.
    USENIX Security Symposium, 2022
    445 cites at Google Scholar
    1538% above average of year
    Visited: Mar-2025
    Paper: DOI
  62. 62
    Loi Luu, Duc-Hiep Chu, Hrishi Olickel, Prateek Saxena, and Aquinas Hobor:
    Making Smart Contracts Smarter.
    ACM Conference on Computer and Communications Security (CCS), 2016
    2730 cites at Google Scholar
    1532% above average of year
    Visited: Feb-2025
    Paper: DOI
  63. 63
    Haowen Chan, Adrian Perrig, and Dawn Xiaodong Song:
    Random Key Predistribution Schemes for Sensor Networks.
    IEEE Symposium on Security and Privacy (S&P), 2003
    4454 cites at Google Scholar
    1528% above average of year
    Visited: Jan-2025
    Paper: DOI
  64. 64
    Karl Koscher, Alexei Czeskis, Franziska Roesner, Shwetak N. Patel, Tadayoshi Kohno, Stephen Checkoway, Damon McCoy, Brian Kantor, Danny Anderson, Hovav Shacham, and Stefan Savage:
    Experimental Security Analysis of a Modern Automobile.
    IEEE Symposium on Security and Privacy (S&P), 2010
    2637 cites at Google Scholar
    1524% above average of year
    Visited: Mar-2025
    Paper: DOI
  65. 65
    Moritz Lipp, Michael Schwarz, Daniel Gruss, Thomas Prescher, Werner Haas, Anders Fogh, Jann Horn, Stefan Mangard, Paul Kocher, Daniel Genkin, Yuval Yarom, and Mike Hamburg:
    Meltdown: Reading Kernel Memory from User Space.
    USENIX Security Symposium, 2018
    2035 cites at Google Scholar
    1512% above average of year
    Visited: Feb-2025
    Paper: DOI
  66. 66
    Hammond Pearce, Baleegh Ahmad, Benjamin Tan, Brendan Dolan-Gavitt, and Ramesh Karri:
    Asleep at the Keyboard? Assessing the Security of GitHub Copilot's Code Contributions.
    IEEE Symposium on Security and Privacy (S&P), 2022
    434 cites at Google Scholar
    1498% above average of year
    Visited: Dec-2024
    Paper: DOI
  67. 67
    Shawn Shan, Wenxin Ding, Josephine Passananti, Stanley Wu, Haitao Zheng, and Ben Y. Zhao:
    Nightshade: Prompt-Specific Poisoning Attacks on Text-to-Image Generative Models.
    IEEE Symposium on Security and Privacy (S&P), 2024
    67 cites at Google Scholar
    1493% above average of year
    Visited: Mar-2025
    Paper: DOI
  68. 68
    Yuchen Yang, Bo Hui, Haolin Yuan, Neil Gong, and Yinzhi Cao:
    SneakyPrompt: Jailbreaking Text-to-image Generative Models.
    IEEE Symposium on Security and Privacy (S&P), 2024
    67 cites at Google Scholar
    1493% above average of year
    Visited: Jan-2025
    Paper: DOI
  69. 69
    Xiaoyu Cao, Minghong Fang, Jia Liu, and Neil Zhenqiang Gong:
    FLTrust: Byzantine-robust Federated Learning via Trust Bootstrapping.
    Network and Distributed System Security Symposium (NDSS), 2021
    707 cites at Google Scholar
    1443% above average of year
    Visited: Feb-2025
    Paper: DOI
  70. 70
    Linyi Li, Tao Xie, and Bo Li:
    SoK: Certified Robustness for Deep Neural Networks.
    IEEE Symposium on Security and Privacy (S&P), 2023
    212 cites at Google Scholar
    1428% above average of year
    Visited: Mar-2025
    Paper: DOI
  71. 71
    Franziska Boenisch, Adam Dziedzic, Roei Schuster, Ali Shahin Shamsabadi, Ilia Shumailov, and Nicolas Papernot:
    When the Curious Abandon Honesty: Federated Learning Is Not Private.
    IEEE European Symposium on Security and Privacy (EuroS&P), 2023
    211 cites at Google Scholar
    1421% above average of year
    Visited: Feb-2025
    Paper: DOI
  72. 72
    Payman Mohassel and Yupeng Zhang:
    SecureML: A System for Scalable Privacy-Preserving Machine Learning.
    IEEE Symposium on Security and Privacy (S&P), 2017
    2297 cites at Google Scholar
    1406% above average of year
    Visited: Jan-2025
    Paper: DOI
  73. 73
    Joseph A. Goguen and José Meseguer:
    Security Policies and Security Models.
    IEEE Symposium on Security and Privacy (S&P), 1982
    3150 cites at Google Scholar
    1397% above average of year
    Visited: Jan-2025
    Paper: DOI
  74. 74
    Shawn Shan, Jenna Cryan, Emily Wenger, Haitao Zheng, Rana Hanocka, and Ben Y. Zhao:
    Glaze: Protecting Artists from Style Mimicry by Text-to-Image Models.
    USENIX Security Symposium, 2023
    205 cites at Google Scholar
    1378% above average of year
    Visited: Jan-2025
    Paper: DOI
  75. 75
    Kanav Gupta, Neha Jawalkar, Ananta Mukherjee, Nishanth Chandran, Divya Gupta, Ashish Panwar, and Rahul Sharma:
    SIGMA: Secure GPT Inference with Function Secret Sharing.
    Proceedings on Privacy Enhancing Technologies (PoPETS), 2024
    62 cites at Google Scholar
    1374% above average of year
    Visited: Mar-2025
    Paper: DOI
  76. 76
    Yuval Yarom and Katrina Falkner:
    FLUSH+RELOAD: A High Resolution, Low Noise, L3 Cache Side-Channel Attack.
    USENIX Security Symposium, 2014
    2133 cites at Google Scholar
    1361% above average of year
    Visited: Mar-2025
    Paper: DOI
  77. 77
    Florian Tramèr, Fan Zhang, Ari Juels, Michael K. Reiter, and Thomas Ristenpart:
    Stealing Machine Learning Models via Prediction APIs.
    USENIX Security Symposium, 2016
    2415 cites at Google Scholar
    1344% above average of year
    Visited: Mar-2025
    Paper: DOI
  78. 78
    Stephen Checkoway, Damon McCoy, Brian Kantor, Danny Anderson, Hovav Shacham, Stefan Savage, Karl Koscher, Alexei Czeskis, Franziska Roesner, and Tadayoshi Kohno:
    Comprehensive Experimental Analyses of Automotive Attack Surfaces.
    USENIX Security Symposium, 2011
    2358 cites at Google Scholar
    1315% above average of year
    Visited: Mar-2025
    Paper: DOI
  79. 79
    Phillip A. Porras and Richard A. Kemmerer:
    Penetration state transition analysis: A rule-based intrusion detection approach.
    Annual Computer Security Applications Conference (ACSAC), 1992
    1307 cites at Google Scholar
    1310% above average of year
    Visited: Mar-2025
    Paper: DOI
  80. 80
    Ari Juels and Burton S. Kaliski Jr.:
    Pors: proofs of retrievability for large files.
    ACM Conference on Computer and Communications Security (CCS), 2007
    2954 cites at Google Scholar
    1295% above average of year
    Visited: Dec-2024
    Paper: DOI
  81. 81
    Robin Sommer and Vern Paxson:
    Outside the Closed World: On Using Machine Learning for Network Intrusion Detection.
    IEEE Symposium on Security and Privacy (S&P), 2010
    2231 cites at Google Scholar
    1274% above average of year
    Visited: Feb-2025
    Paper: DOI
  82. 82
    Martín Abadi, Mihai Budiu, Úlfar Erlingsson, and Jay Ligatti:
    Control-flow integrity.
    ACM Conference on Computer and Communications Security (CCS), 2005
    2652 cites at Google Scholar
    1268% above average of year
    Visited: Dec-2024
    Paper: DOI
  83. 83
    Ari Juels and Martin Wattenberg:
    A Fuzzy Commitment Scheme.
    ACM Conference on Computer and Communications Security (CCS), 1999
    2286 cites at Google Scholar
    1258% above average of year
    Visited: Feb-2025
    Paper: DOI
  84. 84
    Joseph Bonneau, Andrew Miller, Jeremy Clark, Arvind Narayanan, Joshua A. Kroll, and Edward W. Felten:
    SoK: Research Perspectives and Challenges for Bitcoin and Cryptocurrencies.
    IEEE Symposium on Security and Privacy (S&P), 2015
    1846 cites at Google Scholar
    1257% above average of year
    Visited: Feb-2025
    Paper: DOI
  85. 85
    Neil Perry, Megha Srivastava, Deepak Kumar, and Dan Boneh:
    Do Users Write More Insecure Code with AI Assistants?
    ACM Conference on Computer and Communications Security (CCS), 2023
    188 cites at Google Scholar
    1255% above average of year
    Visited: Feb-2025
    Paper: DOI
  86. 86
    Yupei Liu, Yuqi Jia, Runpeng Geng, Jinyuan Jia, and Neil Zhenqiang Gong:
    Formalizing and Benchmarking Prompt Injection Attacks and Defenses.
    USENIX Security Symposium, 2024
    56 cites at Google Scholar
    1231% above average of year
    Visited: Mar-2025
    Paper: DOI
  87. 87
    Adrienne Porter Felt, Erika Chin, Steve Hanna, Dawn Song, and David A. Wagner:
    Android permissions demystified.
    ACM Conference on Computer and Communications Security (CCS), 2011
    2155 cites at Google Scholar
    1194% above average of year
    Visited: Jan-2025
    Paper: DOI
  88. 88
    Vale Tolpegin, Stacey Truex, Mehmet Emre Gursoy, and Ling Liu:
    Data Poisoning Attacks Against Federated Learning Systems.
    European Symposium on Research in Computer Security (ESORICS), 2020
    870 cites at Google Scholar
    1192% above average of year
    Visited: Jan-2025
    Paper: DOI
  89. 89
    Christopher Harth-Kitzerow, Ajith Suresh, Yongqin Wang, Hossein Yalame, Georg Carle, and Murali Annavaram:
    High-Throughput Secure Multiparty Computation with an Honest Majority in Various Network Settings.
    Proceedings on Privacy Enhancing Technologies (PoPETS), 2025
    3 cites at Google Scholar
    1192% above average of year
    Visited: Dec-2024
    Paper: DOI
  90. 90
    Arthur Gervais, Ghassan O. Karame, Karl Wüst, Vasileios Glykantzis, Hubert Ritzdorf, and Srdjan Capkun:
    On the Security and Performance of Proof of Work Blockchains.
    ACM Conference on Computer and Communications Security (CCS), 2016
    2142 cites at Google Scholar
    1181% above average of year
    Visited: Feb-2025
    Paper: DOI
  91. 91
    Yi Zeng, Minzhou Pan, Hoang Anh Just, Lingjuan Lyu, Meikang Qiu, and Ruoxi Jia:
    Narcissus: A Practical Clean-Label Backdoor Attack with Limited Information.
    ACM Conference on Computer and Communications Security (CCS), 2023
    177 cites at Google Scholar
    1176% above average of year
    Visited: Nov-2024
    Paper: DOI
  92. 92
    Maurice Weber, Xiaojun Xu, Bojan Karlas, Ce Zhang, and Bo Li:
    RAB: Provable Robustness Against Backdoor Attacks.
    IEEE Symposium on Security and Privacy (S&P), 2023
    177 cites at Google Scholar
    1176% above average of year
    Visited: Nov-2024
    Paper: DOI
  93. 93
    Ahmed Salem, Rui Wen, Michael Backes, Shiqing Ma, and Yang Zhang:
    Dynamic Backdoor Attacks Against Machine Learning Models.
    IEEE European Symposium on Security and Privacy (EuroS&P), 2022
    346 cites at Google Scholar
    1174% above average of year
    Visited: Feb-2025
    Paper: DOI
  94. 94
    Nicholas Carlini, Chang Liu, Úlfar Erlingsson, Jernej Kos, and Dawn Song:
    The Secret Sharer: Evaluating and Testing Unintended Memorization in Neural Networks.
    USENIX Security Symposium, 2019
    1274 cites at Google Scholar
    1171% above average of year
    Visited: Jan-2025
    Paper: DOI
  95. 95
    James Newsome and Dawn Xiaodong Song:
    Dynamic Taint Analysis for Automatic Detection, Analysis, and SignatureGeneration of Exploits on Commodity Software.
    Network and Distributed System Security Symposium (NDSS), 2005
    2460 cites at Google Scholar
    1169% above average of year
    Visited: Feb-2025
    Paper: DOI
  96. 96
    David D. Clark and D. R. Wilson:
    A Comparison of Commercial and Military Computer Security Policies.
    IEEE Symposium on Security and Privacy (S&P), 1987
    2022 cites at Google Scholar
    1159% above average of year
    Visited: Jan-2025
    Paper: DOI
  97. 97
    Crispin Cowan, Calton Pu, Dave Maier, Heather Hintony, Jonathan Walpole, Peat Bakke, Steve Beattie, Aaron Grier, Perry Wagle, and Qian Zhang:
    StackGuard: Automatic Adaptive Detection and Prevention of Buffer-Overflow Attacks.
    USENIX Security Symposium, 1998
    2472 cites at Google Scholar
    1155% above average of year
    Visited: Jan-2025
    Paper: DOI
  98. 98
    Wenke Lee, Salvatore J. Stolfo, and Kui W. Mok:
    A Data Mining Framework for Building Intrusion Detection Models.
    IEEE Symposium on Security and Privacy (S&P), 1999
    2083 cites at Google Scholar
    1138% above average of year
    Visited: Jan-2025
    Paper: DOI
  99. 99
    Liyi Zhou, Xihan Xiong, Jens Ernstberger, Stefanos Chaliasos, Zhipeng Wang, Ye Wang, Kaihua Qin, Roger Wattenhofer, Dawn Song, and Arthur Gervais:
    SoK: Decentralized Finance (DeFi) Attacks.
    IEEE Symposium on Security and Privacy (S&P), 2023
    170 cites at Google Scholar
    1126% above average of year
    Visited: Jan-2025
    Paper: DOI
  100. 100
    Jianbo Chen, Michael I. Jordan, and Martin J. Wainwright:
    HopSkipJumpAttack: A Query-Efficient Decision-Based Attack.
    IEEE Symposium on Security and Privacy (S&P), 2020
    825 cites at Google Scholar
    1125% above average of year
    Visited: Dec-2024
    Paper: DOI