Yue Duan

Gladwin Development Chair Assistant Professor
Department of Computer Science
Illinois Institute of Technology
yduan12_at_iit(.)edu

Hi, Welcome! I will be joining Illinois Institute of Technology in Fall 2020. I had my postdoctoral training at Cornell University and University of Utah, working with Prof. Elaine Shi & Prof. Mu Zhang. Before that, I obtained my PhD in Computer Science from UC Riverside in 2019, advised by Prof. Heng Yin. My research interests mainly lie in different aspects of Computer Security, including mobile security, IoT security, software testing, blockchain security and AI security. I enjoy solving emerging security problems by leveraging program analysis techniques and deep learning.


Openings:

    I am looking for motivated students to join my research group. Please feel free to contact me if you are interested in working together on exciting projects in Computer Security.


News:

    [May 2020] Will be joining Illinois Institute of Technology this fall as a tenure-track Assistant Professor. See u in Chicago!
    [Mar 2020] Serving on the PC of MLBA 2020, co-located with IJCAI-PRICAI 2020. Please consider submitting your work!
    [Mar 2020] Serving on the PC of BlockApp 2020, co-located with ICDCS 2020. Please consider submitting your work!
    [Feb 2020] Our paper "DeepBinDiff: Learning Program-Wide Code Representations for Binary Diffing" is accepted in NDSS'20.
    [Nov 2019] Delivered a guest lecture at Syracuse University, talking about blockchain security.
    [Nov 2019] Serving on the PC of BlockDM 2020, co-located with ICDE 2020. Please consider submitting your work!
    [Sep 2019] Our paper "Be Sensitive and Collaborative: Analyzing Impact of Coverage Metrics in Greybox Fuzzing" has won the best paper award (1 out of 166 submissions) in RAID'19!

Publication

Journal Papers
  • [J.UCS] JooYoung Lee, Yue Duan, Jae C. Oh, Wenliang Du, Howard Blair, Lusha Wang, and Xing Jin. "Social Network Based Reputation Computation and Document Classification", Journal of Universal Computer Science, 18, no. 4 (2012): 532-553.


Conference Papers
  • [NDSS'20] Yue Duan, Xuezixiang Li, Jinghan Wang, and Heng Yin. "DeepBinDiff: Learning Program-Wide Code Representations for Binary Diffing", in the 27th Network and Distributed System Security Symposium, February 2020. [Paper] [Presentation] [Source Code]

  • [RAID'19] Yue Duan, Lian Gao, Jie Hu, and Heng Yin. "Automatic Generation of Non-intrusive Updates for Third-Party Libraries in Android Applications", in the 22nd International Symposium on Research on Attacks, Intrusions and Defenses, September 2019. [Paper]

  • [RAID'19] Jinghan Wang, Yue Duan, Wei Song, Heng Yin, and Chengyu Song. "Be Sensitive and Collaborative:Analyzing Impact of Coverage Metrics in Greybox Fuzzing", in the 22nd International Symposium on Research on Attacks, Intrusions and Defenses, September 2019. [Paper] Best Paper Award

  • [NDSS'19] Lei Zhao, Yue Duan, Heng Yin, and Jifeng Xuan. "Send Hardest Problems My Way: Probabilistic Path Prioritization for Hybrid Fuzzing", in the 26th Network and Distributed System Security Symposium, February 2019. [Paper]

  • [NDSS'18] Yue Duan, Mu Zhang, Abhishek Vasist Bhaskar, Heng Yin, Xiaorui Pan, Tongxin Li, Xueqiang Wang, and Xiaofeng Wang. "Things You May Not Know About Android (Un)Packers: A Systematic Study based on Whole-System Emulation", in the 25th Network and Distributed System Security Symposium, February 2018. [Paper] [Presentation] [Source Code]

  • [SecureComm'17] Xunchao Hu, Yao Cheng, Yue Duan, Andrew Henderson and Heng Yin. "JSForce: A Forced Execution Engine for Malicious JavaScript Detection", in the 13th EAI International Conference on Security and Privacy in Communication Networks, October 2017. [Paper]

  • [NDSS'17] Xiaorui Pan, Xueqiang Wang, Yue Duan, Xiaofeng Wang, and Heng Yin. "Dark Hazard: Large-Scale Discovery of Unknown Hidden Sensitive Operations in Android Apps", in the 24th Network and Distributed System Security Symposium, February 2017. [Paper]

  • [CCS'15] Mu Zhang, Yue Duan, Qian Feng, and Heng Yin. "Towards Automatic Generation of Security-Centric Descriptions for Android Apps", in Proceedings of the 22nd ACM Conference on Computer and Communications Security, November 2015. [Paper]

  • [HotCloud'15] Yue Duan, Mu Zhang, Heng Yin, and Yuzhe Tang, "Privacy-Preserving Offloading of Mobile App to the Public Cloud", in The 7th USENIX Workshop on Hot Topics in Cloud Computing, Santa Clara, CA, July 2015. [Paper]

  • [CCS'14] Mu Zhang, Yue Duan, Heng Yin, and Zhiruo Zhao. "Semantics-Aware Android Malware Classification using Weighted Contextual API Dependency Graphs", in Proceedings of the 21st ACM Conference on Computer and Communications Security, November 2014. [Paper]



Posters
  • [Oakland'15] Yue Duan, Mu Zhang, Heng Yin, Yuzhe Tang. "Poster: Privacy-Preserving Offloading of Mobile App to the Public Cloud", in the IEEE Symposium on Security and Privacy 2011.

  • [ASONAM'11] JooYoung Lee, Yue Duan, Jae C Oh, Wenliang Du, Howard Blair, Lusha Wang, Xing Jin. "Automatic reputation computation through document analysis: a social network approach", in the Advances in Social Networks Analysis and Mining (ASONAM), 2011 International Conference on.

Professional Services

Journal Reviewers
  • Cybersecurity
  • IEEE Access
  • Frontiers in Computer Science
  • IET Software
  • IET Information Security
  • The Computer Journal
  • International Journal of Information Security and Privacy


Program Committees
  • IJCAI-PRICAI Machine Learning for Binary analysis (MLBA 2020)
  • The Second International Workshop on Blockchain and Data Management (BlockDM 2020)
  • The Second IEEE International Workshop on Blockchain and Mobile Applications (BlockApp 2020)


Conference External Reviewers
  • ACSAC 2014, 2015, 2017
  • SPSM 2014
  • NDSS 2015
  • SecureComm 2015
  • WiSec 2016
  • CCS 2017, 2018, 2019
  • AsiaCCS 2017, 2018

Teaching

At Illinois Institute of Technology
  • CS 595: Topics in Software Security, Fall 2020


Before Illinois Institute of Technology
  • Instructor for CS 4410 Operating Systems, Fall 2019, Cornell University
  • Teaching Assistant for CS 153 Design of Operating Systems, Fall 2018, UC Riverside


Selected Honors

  • Best Paper Award, RAID'19
  • Vulnerability Bounty Reward, $8000, Qihoo Inc.
  • Dean's Distinguished Fellowship, UC Riverside
  • University Graduate Fellowship, Syracuse University
  • Siyuan Fellowship, Xi'an Jiaotong Unversity