Qingbao Li

dblp:17/7774 · DBLP profile ↗
← Back
11ranked-venue papers
0as first author
6since 2021 · last 2025
—ORCID · conflict

Domains — the database's venue-derived domains; a paper can count in several

Security and privacy · 5 · 2 since 2021Software engineering, systems software and programming languages · 2 · 2 since 2021Systems, architecture and hardware · 1 · 1 since 2021Computer networks · 1Databases, data management, data science and information retrieval · 1 · 1 since 2021Applied, interdisciplinary, general and emerging computing · 1
YearPublicationVenuePosition
2025 Edge Coverage Feedback of Embedded Systems Fuzzing Based on Debugging Interfaces
Weihua Jiao, Qingbao Li, Xilong Li, Weiping Yao, Guimin Zhang
ESORICS (3)2
2025 NPFTaint: Detecting highly exploitable vulnerabilities in Linux-based IoT firmware with network parsing functions
Shudan Yue, Qingbao Li, Guimin Zhang, Bocheng Xu, Song Tian
Comput. Secur.2
2025 BinOpLeR: Optimization level recovery from binaries based on rich semantic instruction image and weighted voting
Qingbao Li, Guimin Zhang, Shudan Yue, Weihua Jiao
Inf. Softw. Technol.2
2025 Adaptive mutation based on multi-population evolution strategy for greybox fuzzing
Weihua Jiao, Xilong Li, Qingbao Li, Shudan Yue
Inf. Sci.3
2023 Crop Enclave Interface for SGX Programs
abstract
Existing memory attacks against SGX use the enclave interface, such as ECALLs and OCALLs, to inject malicious data into the enclave’s trusted memory to trigger memory corruption vulnerabilities therein. Therefore, enclave interface security becomes a key issue in defending against such attacks. However, a comprehensive static analysis of source SGX programs is currently lacking to obtain sufficient a priori knowledge to provide effective runtime interface protection for the enclave. In view of this, we identify 8 types of unsafe input data of enclave and design a new interface cropping method, SGXCrop. This method extracts critical interface information from source SGX programs, including ECALLs in use and unsafe input data, which are cropped at runtime of SGX programs. Tests in real SGX environment verify that the proposed method can effectively crop illegal ECALLs and unsafe input data.
Yaqi Fan, Qingbao Li, Wenbo Deng
JCC3
2021 BCI-CFI: A context-sensitive control-flow integrity method based on branch correlation integrity
Ye Wang 0004, Qingbao Li, Ping Zhang 0026, Guimin Zhang, Zhihui Shi
Inf. Softw. Technol.2
2020 Shapeshifter: Intelligence-driven data plane randomization resilient to data-oriented programming attacks
Ye Wang 0004, Qingbao Li, Ping Zhang 0026, Guimin Zhang
Comput. Secur.2
2020 A Survey of Exploitation Techniques and Defenses for Program Data Attacks
Ye Wang 0004, Qingbao Li, Ping Zhang 0026, Guimin Zhang
J. Netw. Comput. Appl.2
2019 DOPdefender: An approach to thwarting data-oriented programming attacks based on a data-aware automaton
Ye Wang 0004, Qingbao Li, Ping Zhang 0026, Guimin Zhang
Comput. Secur.2
2015 Ensuring Kernel Integrity Using KIPBMFH
Qingbao Li, Songhui Guo, Ye Wang 0004
ICICS2
2013 Binary Program Statistical Features Hiding through Huffman Obfuscated Coding
Xiaopeng Niu, Qingbao Li, Xiaokang Weng
ICIC (1)2