Tiffany Bao
Arizona State University
32 Papers
11 Citations
Tiffany Bao is an academic researcher from Arizona State University. The author has contributed to research in topics: Computer science & Exploit. The author has an hindex of 5, co-authored 19 publications. Previous affiliations of Tiffany Bao include Carnegie Mellon University.
Chat about Author
Papers
Not All Coverage Measurements Are Equal: Fuzzing by Coverage Accounting for Input Prioritization.
Yanhao Wang,Jia Xiangkun,Yuwei Liu,Kyle Zeng,Tiffany Bao,Dinghao Wu,Purui Su +6 more
- 01 Jan 2020
TL;DR: This work proposes coverage accounting, a novel approach that evaluates coverage by security impacts, and designs a new scheme to prioritize fuzzing inputs and develops TortoiseFuzz, a greybox fuzzer for finding memory corruption vulnerabilities.
133
Matched and Mismatched SOCs: A Qualitative Study on Security Operations Center Issues
Faris Bugra Kokulu,Ananta Soneji,Tiffany Bao,Yan Shoshitaishvili,Ziming Zhao,Adam Doupé,Gail-Joon Ahn +6 more
- 06 Nov 2019
TL;DR: This study conducted 18 semi-structured interviews with SOC analysts and managers and found inherent disagreements between SOC managers and their analysts that, if not addressed, could entail a risk to SOC efficiency and effectiveness.
105
CrawlPhish: Large-scale Analysis of Client-side Cloaking Techniques in Phishing
Penghui Zhang,Adam Oest,Haehyun Cho,Zhibo Sun,RC Johnson,Brad Wardman,Shaown Sarker,Alexandros Kapravelos,Tiffany Bao,Ruoyu Wang,Yan Shoshitaishvili,Adam Doupé,Gail-Joon Ahn +12 more
- 23 May 2021
TL;DR: CrawlPhish as discussed by the authors is a framework for automatically detecting and categorizing client-side cloaking used by known phishing websites, which can be used to not only improve the ecosystem's ability to mitigate phishing website with client side cloaking, but also continuously identify emerging cloaking techniques as they are launched by attackers.
81
HoneyPLC: A Next-Generation Honeypot for Industrial Control Systems
Efrén López-Morales,Carlos E. Rubio-Medrano,Adam Doupé,Yan Shoshitaishvili,Ruoyu Wang,Tiffany Bao,Gail-Joon Ahn +6 more
- 30 Oct 2020
TL;DR: HoneyPLC is presented, a high-interaction, extensible, and malware collecting honeypot supporting a broad spectrum of PLCs models and vendors, showing not only that attackers are in fact targeting ICS systems, but also that HoneyPLC can effectively engage and deceive them while collecting data samples for future analysis.
Your Exploit is Mine: Automatic Shellcode Transplant for Remote Exploits
Tiffany Bao,Ruoyu Wang,Yan Shoshitaishvili,David Brumley +3 more
- 22 May 2017
TL;DR: ShellSwap is presented, a system that uses symbolic tracing, with a combination of shellcode layout remediation and path kneading to achieve shellcode transplant, which successfully generated 88% of the exploits.
57