When Assessment Propagates Insecurity: How Inter-Organizational Supply Chain Security Assessment Decouples Awareness from Practice
ACM CCS 2026 Acceptance Rate 8.3% · Supply Chain Security, Security Assessment, Organizational Practice
This paper examines how inter-organizational supply chain security assessments can spread insecurity by separating organizations’ awareness of security risks from their security practices.
Huancheng Hu, Christian Doerr
Security in the Air: Understanding IoT Vendor Practices and the Economics of Over-the-Air Updates
USENIX 2026 · IoT Security, Over-the-Air Updates, Security Economics
This paper analyzes how IoT vendors design, operate, and sustain OTA firmware-update pipelines across fragmented device supply chains. It connects technical constraints such as upstream SDK and chipset dependencies, firmware reuse, signing infrastructure, and hardware limitations with the economic forces that determine update frequency, support duration, and long-term device security.
Huancheng Hu, Christian Doerr
A Kinetic-Energy Perspective of Flow Matching
ICML 2026 Spotlight Top 2.2% · Generative Models, Flow Matching, Machine Learning
We introduce Kinetic Path Energy (KPE), an action-like, per-sample diagnostic measuring accumulated kinetic effort along ODE trajectories in flow-based generative models. Higher KPE predicts stronger semantic fidelity but extreme energies drive memorization, motivating Kinetic Trajectory Shaping (KTS), a training-free inference strategy that improves generation quality.
Ziyun Li, Huancheng Hu, et al.
Beyond the Device: A Security Analysis of White-Label Children’s Smartwatches and Their Ecosystem
AsiaCCS 2026 · Vulnerable Group Security, IoT Security, Supply Chain
White-label children’s smartwatches are built in supply chains by thin margins and weak oversight, creating systemic security gaps for vulnerable children. This paper presents the first comprehensive analysis exposing new critical vulnerabilities across firmware, apps, cloud backends, and the supply chain itself.
Huancheng Hu, Christian Doerr
LotBoNC: Novel Botnet Traffic Classification under Long-tailed Distributions
AsiaCCS 2026 · Network Security, IoT Security, Machine Learning
In operational networks, botnet traffic is long-tailed, dominated by common classes, and constantly enriched by rare, unseen variants. To address this, we propose LotBoNC, a unified framework tailored for long-tailed, open-world encrypted traffic.
Huancheng Hu, Ziyun Li, Christian Doerr
BoNC: Discovering and Classifying Novel Encrypted Botnet Traffic
Open Journal of Communication Societies (OJCOMS) · Network Security, IoT Security, Machine Learning
This paper presents BoNC, a unified framework that accurately detects and classifies both known and previously unseen encrypted botnet traffic in open-world environments.
Huancheng Hu, Ziyun Li, Christian Doerr
Opening a Can of Worms: A Comprehensive View into the Android Debug Bridge Malware
TrustCom 2025 · IoT Security
We present the first comprehensive study of ADB-targeting worms, analyzing over seven years of real-world data encompassing 1.7 million infected IPs and more than 6 billion compromise attempts.
Huancheng Hu, Christian Doerr