Auditing Apple's DifferentialPrivacy.framework: Implementation Bugs, Misconfigurations, and Practical RisksRishav Chourasia, Ergute Bao, Uzair Javaid et al.
Rishav Chourasia, Ergute Bao, Uzair Javaid et al.
BreakFAST: Confused Deputy Attack on Infinity Fabric to Break AMD SEV-SNPPhilipp Giersfeld, Benedict Schlüter, Shweta Shinde
Philipp Giersfeld, Benedict Schlüter, Shweta Shinde
Demystifying and Exploiting ASLR on NVIDIA GPUsRuofan Zhu, Ganhao Chen, Wenbo Shen et al.
Ruofan Zhu, Ganhao Chen, Wenbo Shen et al.
Enter, Exit, Page Fault, Leak: Testing Isolation Boundaries for Microarchitectural LeaksOleksii Oleksenko, Flavien Solt, Cédric Fournet et al.
Oleksii Oleksenko, Flavien Solt, Cédric Fournet et al.
GPUBreach: Privilege Escalation Attacks on GPUs using RowhammerChris S. Lin, Yuqin Yan, Guozhen Ding et al.
Chris S. Lin, Yuqin Yan, Guozhen Ding et al.
Goldilocks and the Three P-States: Mitigating Hertzbleed with Formal Leakage GuaranteesInwhan Chun, Christine Guo, Riccardo Paccagnella
Inwhan Chun, Christine Guo, Riccardo Paccagnella
LLMs in the SOC: An Empirical Study of Human-AI Collaboration in Security Operations CentresRonal Singh, Shahroz Tariq, Fatemeh Jalalvand et al.
Ronal Singh, Shahroz Tariq, Fatemeh Jalalvand et al.
Lost in Translation: Text Message Spoofing via EmailSumanth Rao, Ye Shu, Stefan Savage et al.
Sumanth Rao, Ye Shu, Stefan Savage et al.
Nebula: Proving machine executions via folding schemesArasu Arun, Srinath Setty
Arasu Arun, Srinath Setty
Phoenix: Rowhammer Attacks on DDR5 with Self-Correcting SynchronizationDiego Meyer, Patrick Jattke, Michele Marazzi et al.
Diego Meyer, Patrick Jattke, Michele Marazzi et al.
Responsible Disclosure is a Two-Way Street: Empirically Measuring the Responsible Disclosure Contract in the Firmware EcosystemHui Jun Tay, Souradip Nath, Arvind S Raj et al.
Hui Jun Tay, Souradip Nath, Arvind S Raj et al.
TREVEX: A Black-Box Detection Framework For Data-Flow Transient Execution VulnerabilitiesDaniel Weber, Fabian Thomas, Leon Trampert et al.
Daniel Weber, Fabian Thomas, Leon Trampert et al.
Weighted Batched Threshold Encryption with Applications to Mempool PrivacyAmit Agarwal, Kushal Babel, Sourav Das et al.
Amit Agarwal, Kushal Babel, Sourav Das et al.
Your Compiler is Backdooring Your Model: Understanding and Exploiting Compilation Inconsistency Vulnerabilities in Deep Learning CompilersSimin Chen, Jinjun Peng, Yixin He et al.
The next date is an estimate from the months past editions were announced (May); it changes when IEEE Computer Society TC on Security and Privacy announces one.
Sources: each organizer's own list, linked on every winner, read monthly in each award's announcement window. A list is the organizer's judgment, not ours. Logos via logo.dev; trademarks belong to their owners.
Award winners by email
At most once a month, only when a tracked award or list has published new winners.