Publications of Zhichun "ZL" Li

[Book Chapters] [Papers]  [Posters]  [Technique Reports

Book Chapters:

"Honeynet-based Botnet Scan Traffic Analysis",
Zhichun Li, Anup Goyal, and Yan Chen,
invited book chapter for Botnet Detection: Countering the Largest Security Threat, Springer, 2007.

Papers:

"Checking More and Alerting Less: Detecting Privacy Leakages via Enhanced Data-flow Analysis and Peer Voting",
Kangjie Lu, Zhichun Li, Vasileios Kemerlis, Zhenyu Wu, Long Lu, Cong Zheng, Zhiyun Qian, Wenke Lee, Guofei Jiang,
to appear in the Annual Network & Distributed System Security Symposium (NDSS) 2015.

"Redefining Web Browser Principals with a Configurable Origin Policy",
Yinzhi Cao, Vaibhav Rastogi, Zhichun Li, Yan Chen, and Alex Moshchuk,
in Proceedings of IEEE/IFIP International Conference on Dependable Systems and Network (DSN) 2013.

"CHEX: Statically Vetting Android Apps for Component Hijacking Vulnerabilities",
Long Lu, Zhichun Li, Zhenyu Wu, Wenke Lee, and Guofei Jiang,
in Proceedings of ACM CCS 2012.
((PDF 1.9MB)

"Virtual Browser: a Virtualized Browser to Sandbox Third-party JavaScripts with Enhanced Security",
Yinzhi Cao, Zhichun Li, Vaibhav Rastogi, Xitao Wen, and Yan Chen,
full paper, in Proceedings of ACM Symposium on Information, Computer and Communications Security (ASIACCS) 2012.
((PDF 292KB)

"Measurement and Diagnosis of Address Misconfigured P2P Traffic",
Zhichun Li, Anup Goyal, Yan Chen and Aleksandar Kuzmanovic,
In IEEE Network Magazine, Vol. 25, no. 3, May 2011.
(PDF 104KB)

"Towards Situational Awareness of Large-scale Botnet Probing Events",
Zhichun Li, Anup Goyal, Yan Chen and Vern Paxson,
In IEEE Transactions on Information Forensics and Security, Volume 6, Issue 1, March 2011.
(PDF 965KB)

"WebShield: Enabling Various Web Defense Techniques without Client Side Modifications",
Zhichun Li, Yi Tang, Yinzhi Cao, Vaibhav Rastogi, Yan Chen and Bin Liu,
In Proceedings of the Annual Network & Distributed System Security Symposium (NDSS) 2011.
(PDF 279KB)

"Detecting and Characterizing Social Spam Campaigns",
Hongyu Gao, Jun Hu, Christo Wilson, Zhichun Li, Yan Chen, and Ben Y. Zhao,
In proceedings of ACM SIGCOMM IMC 2010.
(PDF 1.1MB)

"NetShield: Matching with a Large Vulnerability Signature Ruleset for High Performance Network Defense",
Zhichun Li, Gao Xia, Hongyu Gao, Yi Tang, Yan Chen, Bin Liu, Junchen Jiang and Yuezhou Lv,
In Proceedings of ACM SIGCOMM 2010.
(PDF 296KB)

"WebProphet: Automating Performance Prediction for Web Services",
Zhichun Li, Ming Zhang, Zhaosheng Zhu, Yan Chen, Albert Greenberg and Yi-Min Wang,
in Proceedings of USENIX Symposium on Networked Systems Design and Implementation (NSDI) 2010.
(PDF 387KB)

"Measurement and Diagnosis of Address Misconfigured P2P Traffic",
Zhichun Li, Anup Goyal, Yan Chen and Aleksandar Kuzmanovic,
in Proceedings of IEEE INFOCOM 2010.
(PDF 228KB)

"HiFIND: A High-Speed Flow-Level Intrusion Detection Approach with DoS Resiliency",
Zhichun Li, Yan Gao and Yan Chen,
In Journal of Computer Networks, Volume 54, Issue 8, 1 June 2010.
(PDF 683KB)

"Thwarting Zero-Day Polymorphic Worms with Network-Level Length-Based Signature Generation",
Lanjia Wang, Zhichun Li, Yan Chen, Judy Fu and Xing Li,
in ACM/IEEE Transaction on Networking (TON), Volume 18, Issue 1, 2010.
(PDF 854KB)

"Automating Analysis of Large-Scale Botnet Probing Events",
Zhichun Li, Anup Goyal, Yan Chen and Vern Paxson,
in Proceedings of ACM Symposium on Information, Computer and Communications Security (ASIACCS) 2009.
(PDF 372KB)

"Network-based and Attack-resilient Length Signature Generation for Zero-day Polymorphic Worms",
Zhichun Li, Lanjia Wang, Yan Chen and Zhi (Judy) Fu,
in Proceedings of IEEE ICNP 2007.
(PDF 240KB) (Slides 1.1MB)

"Reversible sketches: Enabling monitoring and analysis over high-speed data streams",
Robert Schweller, Zhichun Li, Yan Chen, Yan Gao, Ashish Gupta, Elliot Parsons, Yin Zhang,
Peter Dinda, Ming-Yang Kao, and Gokhan Memik,
in IEEE/ACM Transactions on Networking, Volume 15, Issue 5, Oct. 2007.
(PDF 5.9MB)

"Hamsa: Fast Signature Generation for Zero-day Polymorphic Worms with Provable Attack Resilience",
Zhichun Li, Manan Sanghi, Brian Chavez, Yan Chen, and Ming-Yang Kao,
in Proceedings of IEEE Symposium on Security and Privacy 2006.
(PDF 289KB) (Slides 494KB)

"Towards Scalable and Robust Distributed Intrusion Alert Fusion with Good Load Balancing",
Zhichun Li, Yan Chen, and Aaron Beach,
in Proceedings of ACM SIGCOMM Workshop on Large-Scale Attack Defense 2006.
(PDF 270KB) (Slides 4.7MB)

"Reverse Hashing for High-speed Network Monitoring: Algorithms, Evaluation, and Applications",
Robert Schweller, Zhichun Li, Yan Chen, Yan Gao, Ashish Gupta, Elliot Parsons, Yin Zhang,
Peter Dinda, Ming-Yang Kao, and Gokhan Memik,
in Proceedings of IEEE INFOCOM 2006.
(PDF 388KB) (Slides 1.5MB)

"A DoS Resilient Flow-level Intrusion Detection Approach for High-speed Networks",
Yan Gao, Zhichun Li, and Yan Chen,
in Proceedings of the 26th International Conference on Distributed Computing Systems (ICDCS), 2006.
(PDF 363KB) (Slides 1.1MB)

"IDGraphs: Intrusion Detection and Analysis Using Stream Compositing",
Pin Ren, Yan Gao, Zhichun Li, Yan Chen and Ben Watson,
in IEEE Computer Graphics & Applications, vol. 26, no. 2, pp. 28-39, Mar/Apr, 2006
(PDF 18MB)

"IDGraphs: Intrusion Detection and Analysis Using Histographs",
Pin Ren, Yan Gao, Zhichun Li, Yan Chen and Ben Watson,
in Proceedings of the IEEE Workshop on Visualization for Computer Security (VizSEC), in conjunction with Visualization 2005 and InfoVis 2005 conferences.
(PDF 1.8MB)

"Linuxflow: A High Speed Backbone Measurement Facility",
ZhiChun Li, Hui Zhang, Yue You, and Tao He,
Passive and Active Measurement Workshop (PAM) 2003, April 2003.
(PDF 190KB) (Slides 375KB)

"Design and Implementation of A High Speed Backbone Measurement System"(in Chinese),
ZhiChun Li, Hui Zhang, Yue You, and ZiMu Li,
Journal of Computer Engineering (Chinese) Vol.29 pp.53-56
(PDF 323KB)

"A Methodology for Analyzing Backbone Network Traffic at Stream-Level",
Tao He, Hui Zhang, Xing LI, and Zhichun Li,
IEEE International Conference on Communication Technology(ICCT2003), April 2003
(PDF 111KB)

"Statistical Characteristics of Multicast Traffic on a Nationwide Backbone Network",
Tao He, Xing Li, Jian Qiu, Hui Zhang, and ZhiChun Li,
Asia-Pacific Advanced Network, August 2003.
(PDF 781KB)

Posters:

"Towards a High-speed Router-based Anomaly/Intrusion Detection System",
Zhichun Li, Yan Gao, and Yan Chen,
ACM SIGCOMM 2005, August, 2005.
(PDF 69KB) (Slides 1.3MB)

Technique Reports:

"Network-based and Attack-resilient Length Signature Generation for Zero-day Polymorphic Worms",
Zhichun Li, Lanjia Wang, Yan Chen, and Zhi (Judy) Fu,
NWU-EECS-07-02