MAY 18-21, 2026 AT THE HILTON SAN FRANCISCO UNION SQUARE, SAN FRANCISCO, CA

47th IEEE Symposium on
Security and Privacy

Distinguished Paper Awards

Enter, Exit, Page Fault, Leak: Testing Isolation Boundaries for Microarchitectural Leaks
Oleksii Oleksenko1, Flavien Solt2, Cédric Fournet1, Jana Hofmann,1, Boris Köpf1, Stavros Volos1
1: Azure Research, Microsoft, 2: ETH Zurich
Your Compiler is Backdooring Your Model: Understanding and Exploiting Compilation Inconsistency Vulnerabilities in Deep Learning Compilers
Simin Chen1, Jinjun Peng1, Yixin He2, Junfeng Yang1, Baishakhi Ray1
1: Columbia University, 2: University of Southern California
Demystifying and Exploiting ASLR on NVIDIA GPUs
Ruofan Zhu1, Ganhao Chen1, Wenbo Shen1, Lyuye Zhang2, Dakun Shen1, Rui Chang1, Yanan Guo3
1: Zhejiang University, 2: Nanyang Technological University, 3: University of Rochester
Phoenix: Rowhammer Attacks on DDR5 with Self-Correcting Synchronization
Diego Meyer1, Patrick Jattke1, Michele Marazzi1, Salman Qazi2, Daniel Moghimi2, Kaveh Razavi1
1: ETH Zurich, 2: Google
Nebula: Proving machine executions via folding schemes
Arasu Arun1, Srinath Setty2
1: New York University, 2: Microsoft Research
LLMs in the SOC: An Empirical Study of Human-AI Collaboration in Security Operations Centres
Ronal Singh1, Shahroz Tariq1, Fatemeh Jalalvand1, Mohan Baruwal Chhetri1, Surya Nepal1, Cecile Paris1, Martin Lochner2
1: Data61, CSIRO, 2: eSentire Inc
Auditing Apple’s DifferentialPrivacy.framework: Implementation Bugs, Misconfigurations, and Practical Risks
Rishav Chourasia1, Ergute Bao2, Uzair Javaid1, Xiaokui Xiao3
1: Betterdata.ai, 2: Mohamed bin Zayed University of Artificial Intelligence, 3: National University of Singapore
Lost in Translation: Text Message Spoofing via Email
Sumanth Rao1, Ye Shu1, Stefan Savage1, Aaron Schulman1, Geoffrey M. Voelker1, Enze Liu2
1: UC San Diego, 2: CMU
BreakFAST: Confused Deputy Attack on Infinity Fabric to Break AMD SEV-SNP
Philipp Giersfeld, Benedict Schlüter, Shweta Shinde
ETH Zurich
Weighted Batched Threshold Encryption with Applications to Mempool Privacy
Amit Agarwal1, Kushal Babel1, Sourav Das1, Babak Poorebrahim Gilkalaye1, Arup Mondal2, Benny Pinkas3, Peter Rindal1, Aayush Yadav4
1: Category Labs, 2: Ashoka University, 3: Bar-Ilan University, 4: George Mason University
TREVEX: A Black-Box Detection Framework For Data-Flow Transient Execution Vulnerabilities
Daniel Weber, Fabian Thomas, Leon Trampert, Ruiyi Zhang, Michael Schwarz
CISPA Helmholtz Center for Information Security
GPUBreach: Privilege Escalation Attacks on GPUs using Rowhammer
Chris S. Lin, Yuqin Yan, Guozhen Ding, Joyce Qu, Joseph Zhu, David Lie, Gururaj Saileshwar
University of Toronto
Responsible Disclosure is a Two-Way Street: Empirically Measuring the Responsible Disclosure Contract in the Firmware Ecosystem
Hui Jun Tay, Souradip Nath, Arvind S Raj, Abhay Bhat, Ishan Bansal, Audrey Dutcher, Moritz Schloegel, Adam Doupé, Tiffany Bao, Yan Shoshitaishvili, Ruoyu Wang
Arizona State University
Goldilocks and the Three P-States: Mitigating Hertzbleed with Formal Leakage Guarantees
Inwhan Chun1, Christine Guo2, Riccardo Paccagnella1
1: Carnegie Mellon University, 2: Princeton University