VLDB 2026 Research / reviewers in the wild / expert
Huiyun Peng
dblp:299/4420
· DBLP profile ↗
4ranked-venue papers
2as first author
4since 2021 · last 2026
0009-0003-2574-5316ORCID · corroborated
Domains — the database's venue-derived domains; a paper can count in several
Software engineering, systems software and programming languages · 3 · 2 first-author · 3 since 2021Databases, data management, data science and information retrieval · 1 · 1 first-author · 1 since 2021
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2026 | How Do Agents Perform Code Optimization? An Empirical StudyabstractPerformance optimization is a critical yet challenging aspect of software development, often requiring a deep understanding of system behavior and algorithmic tradeoffs, and careful code modifications. Although recent advances in AI coding agents have accelerated code generation and bug fixing, little is known about how these agents perform on real-world performance optimization tasks. Huiyun Peng, Antonio Zhong Qiu, Ricardo Andrés Calvo Méndez, Kelechi G. Kalu, James C. Davis 0001 |
MSR | 1 |
| 2026 | SysLLMatic: Large language models are software system optimizers
Huiyun Peng, Arjun Gupte, Ryan Hasler, Nicholas Eliopoulos, Chien Chou Ho, Rishi Mantri, Leo Deng, Konstantin Läufer, George K. Thiruvathukal, James C. Davis 0001 |
J. Syst. Softw. | 1 |
| 2025 | $ZTD_{\text{JAVA}}$: Mitigating Software Supply Chain Vulnerabilities via Zero-Trust DependenciesabstractThird-party libraries like Log4j accelerate software application development but introduce substantial risk. Vulnerabilities in these libraries have led to Software Supply Chain (SSC) attacks that compromised resources within the host system. These attacks benefit from current application permissions approaches: third-party libraries are implicitly trusted in the application runtime. An application runtime designed with ZeroTrust Architecture (ZTA) principles - secure access to resources, continuous monitoring, and least-privilege enforcement - could mitigate SSC attacks, as it would give zero implicit trust to these libraries. However, no individual security defense incorporates these principles at a low runtime cost. This paper proposes Zero-Trust Dependencies to mitigate SSC vulnerabilities: we apply the NIST ZTA to software applications. First, we assess the expected effectiveness and configuration cost of Zero-Trust Dependencies using a study of third-party software libraries and their vulnerabilities. Then, we present a system design,$\text{ZTD}_{\text{Sys}}$, that enables the application of Zero-Trust Dependencies to software applications and a prototype,$\text{ZTD}_{\text{JAVA}}$, for Java applications. Finally, with evaluations on recreated vulnerabilities and realistic applications, we show that$\text{ZTD}_{\text{JAVA}}$can defend against prevalent vulnerability classes, introduces negligible cost, and is easy to configure and use. Paschal C. Amusuo, Kyle A. Robinson, Tanmay Singla, Huiyun Peng, Aravind Machiry, Santiago Torres-Arias, James C. Davis 0001 |
ICSE | 4 |
| 2021 | A Resource Management Based on Deep Learning in Ubiquitous Power Internet of ThingsabstractThis paper proposes a resource allocation method based on deep learning in power internet of things. The method uses density-based spatial clustering of noisy applications (DBSCAN) to analyze data, and then trains deep neural networks (DNN) based on the results of DBSCAN data. The results show that our method can significantly improve the user's quality of service (QoS). Wenhao Yao, Huaide Peng, Huiyun Peng, Yanfang Xiong, Qiang Kong |
IWCMC | 3 |