2025
-
[NDSS'25] Revisiting Physical-World Adversarial Attack on Traffic Sign Recognition: A Commercial Systems Perspective
Ningfei Wang, Shaoyuan Xie, Takami Sato, Yunpeng Luo, Kaidi Xu, Qi Alfred Chen
The Network and Distributed System Security Symposium 2025
(NDSS 2025)
[Paper] [Paper arXiv]
[bibtex]
@inproceedings{wang2025revisiting,
title={{Revisiting Physical-World Adversarial Attack on Traffic Sign Recognition: A Commercial Systems Perspective}},
author={Wang, Ningfei and Xie, Shaoyuan and Sato, Takami and Luo, Yunpeng and Xu, Kaidi and Chen, Qi Alfred},
booktitle={2025 The Network and Distributed System Security Symposium (NDSS)},
year={2025}
}
2024
-
[WWW'24] Towards Robustness Analysis of E-Commerce Ranking System
Ningfei Wang, Yupin Huang, Han Cheng, Jiri Gesi, Xiaojie Wang, Vivek Mittal
The ACM Web Conference 2024
(WWW 2024)
[Paper] [Paper arXiv] [Promo Video]
[bibtex]
@inproceedings{wang2024towards,
title={{Towards Robustness Analysis of E-Commerce Ranking System}},
author={Wang, Ningfei and Huang, Yupin and Cheng, Han and Gesi, Jiri and Wang, Xiaojie and Mittal, Vivek},
booktitle={Proceedings of the ACM Web Conference 2024 (WWW 2024)},
year={2024}
}
-
[AAAI'24] SlowTrack: Increasing the Latency of Camera-based Perception in Autonomous Driving Using Adversarial Examples
Chen Ma*, Ningfei Wang*, Qi Alfred Chen, Chao Shen
The 38th Annual AAAI Conference on Artificial Intelligence
(AAAI 2024)
[Paper] [Paper arXiv] [ Code]
[bibtex]
@inproceedings{ma2024slowtrack,
title={{SlowTrack: Increasing the Latency of Camera-Based Perception in Autonomous Driving Using Adversarial Examples}},
author={Ma, Chen and Wang, Ningfei and Chen, Qi Alfred and Shen, Chao},
booktitle={Proceedings of the AAAI Conference on Artificial Intelligence},
volume={38},
number={5},
pages={4062--4070},
year={2024}
}
-
[CVPR'24] Intriguing Properties of Diffusion Models: A Large-Scale Dataset for Evaluating Natural Attack Capability in Text-to-Image Generative Models
Takami Sato*, Justin Yue*, Nanze Chen*, Ningfei Wang, Qi Alfred Chen
The IEEE/CVF Conference on Computer Vision and Pattern Recognition 2024 (CVPR 2024)
[Paper] [Paper arXiv]
[bibtex]
@inproceedings{sato2024intriguing,
title={{Intriguing Properties of Diffusion Models: A Large-Scale Dataset for Evaluating Natural Attack Capability in Text-to-Image Generative Models}},
author={Sato, Takami and Yue, Justin and Chen, Nanze and Wang, Ningfei and Chen, Qi Alfred},
booktitle={Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition (CVPR 2024)},
year={2024}
}
-
[VehicleSec'24] A Cross-Verification Approach with Publicly Available Map for Detecting Off-Road Attacks against Lane Detection Systems
Takami Sato, Ningfei Wang, Yueqiang Cheng, and Qi Alfred Chen
Inaugural Symposium on Vehicle Security and Privacy 2024
(VehicleSec 2024)
[Paper]
[bibtex]
@inproceedings{ma2023wip,
title={{A Cross-Verification Approach with Publicly Available Map for Detecting Off-Road Attacks against Lane Detection Systems}},
author={Sato, Takami and Wang, Ningfei and Cheng, Yueqiang and Chen, Qi Alfred},
booktitle={ISOC Symposium on Vehicle Security and Privacy (VehicleSec)},
year={2024}
}
2023
-
[ICCV'23] Does Physical Adversarial Example Really Matter to Autonomous Driving? Towards System-Level Effect of Adversarial Object Evasion Attack
Ningfei Wang, Yunpeng Luo, Takami Sato, Kaidi Xu, Qi Alfred Chen
International Conference on Computer Vision 2023
(ICCV 2023)
[Paper] [Paper arXiv] [Website]
[bibtex]
@InProceedings{Wang_2023_ICCV,
author = {Wang, Ningfei and Luo, Yunpeng and Sato, Takami and Xu, Kaidi and Chen, Qi Alfred},
title = {{Does Physical Adversarial Example Really Matter to Autonomous Driving? Towards System-Level Effect of Adversarial Object Evasion Attack}},
booktitle = {Proceedings of the IEEE/CVF International Conference on Computer Vision (ICCV)},
month = {October},
year = {2023},
pages = {4412-4423}
}
-
[VehicleSec'23] WIP: Towards the Practicality of the Adversarial
Attack on Object Tracking in Autonomous Driving
Chen Ma, Ningfei Wang, Qi Alfred Chen, Chao Shen
Inaugural Symposium on Vehicle Security and Privacy 2023
(VehicleSec 2023)
[Paper]
[bibtex]
@inproceedings{ma2023wip,
title={{WIP: Towards the Practicality of the Adversarial Attack on Object Tracking in Autonomous Driving}},
author={Ma, Chen and Wang, Ningfei and Chen, Qi Alfred and Shen, Chao},
booktitle={ISOC Symposium on Vehicle Security and Privacy (VehicleSec)},
year={2023}
}
-
[DAC’23] Invited: Waving the Double-Edged Sword: Building Resilient CAVs with Edge and Cloud Computing
Xiangguo Liu, Yunpeng Luo, Anthony Goeckner, Trishna Chakraborty, Ruochen Jiao, Ningfei Wang, Yixuan Wang, Takami Sato, Qi Alfred Chen, and Qi Zhu
The 60th ACM/IEEE Design Automation Conference 2023
(DAC 2023)
[Paper]
[bibtex]
@inproceedings{liu2023waving,
title={{Waving the Double-Edged Sword: Building Resilient CAVs with Edge and Cloud Computing}},
author={Liu, Xiangguo and Luo, Yunpeng and Goeckner, Anthony and Chakraborty, Trishna and Jiao, Ruochen and Wang, Ningfei and Wang, Yixuan and Sato, Takami and Chen, Qi Alfred and Zhu, Qi},
booktitle={2023 60th ACM/IEEE Design Automation Conference (DAC)},
pages={1--4},
year={2023},
organization={IEEE}
}
2022
-
[AutoSec'22] WIP: Infrastructure-Aided Defense for Autonomous Driving Systems: Opportunities and Challenges
Yunpeng Luo, Ningfei Wang, Bo Yu, Shaoshan Liu, Qi Alfred Chen
The 4th International Workshop on Automotive and Autonomous Vehicle Security
(AutoSec 2022)
[Paper] [bibtex]
@inproceedings{luo2022infrastructure,
title={{WIP: Infrastructure-Aided Defense for Autonomous Driving Systems: Opportunities and Challenges}},
author={Luo, Yunpeng and Wang, Ningfei and Yu, Bo and Liu, Shaoshan and Chen, Qi Alfred},
booktitle={NDSS Workshop on Automotive and Autonomous Vehicle Security (AutoSec)},
year={2022}
}
2021
-
[IEEE S&P'21] Invisible for both Camera and LiDAR: Security of Multi-Sensor Fusion based Perception in Autonomous Driving Under Physical-World Attacks
Yulong Cao*, Ningfei Wang*, Chaowei Xiao*, Dawei Yang*, Jin Fang, Ruigang Yang, Qi Alfred Chen, Mingyan Liu, Bo Li
The 42nd IEEE Symposium on Security and Privacy (IEEE S&P 2021)
[Paper] [Paper arXiv] [Preview] [Talk] [Slides] [Website] [bibtex]
@inproceedings{cao2021invisible,
title={{Invisible for both Camera and LiDAR: Security of Multi-Sensor Fusion based Perception in Autonomous Driving Under Physical-World Attacks}},
author={Cao, Yulong and Wang, Ningfei and Xiao, Chaowei and Yang, Dawei and Fang, Jin and Yang, Ruigang and Chen, Qi Alfred and Liu, Mingyan and Li, Bo},
booktitle={2021 IEEE Symposium on Security and Privacy (SP)},
pages={176--194},
year={2021},
organization={IEEE}
}
-
[USENIX Security'21] Dirty Road Can Attack: Security of Deep Learning based Automated LaneCentering under Physical-World Attack
Takami Sato*, Junjie Shen*, Ningfei Wang, Yunhan Jack Jia, Xue Lin, Qi Alfred Chen
The 30th USENIX Security Symposium, Winter Quarter (USENIX Security 2021)
[Paper] [Extended Version] [Website] [bibtex]
@inproceedings{sato2021dirty,
title={{Dirty Road Can Attack: Security of Deep Learning based Automated LaneCentering under Physical-World Attack}},
author={Sato, Takami and Shen, Junjie and Wang, Ningfei and Jia, Yunhan and Lin, Xue and Chen, Qi Alfred},
booktitle={30th USENIX Security Symposium (USENIX Security 21)},
pages={3309--3326},
year={2021}
}
-
[AutoSec'21] WIP: Deployability Improvement, Stealthiness User Study, and Safety Impact Assessment on Real Vehicle for Dirty Road Patch Attack
Takami Sato*, Junjie Shen*, Ningfei Wang, Yunhan Jack Jia, Xue Lin, Qi Alfred Chen
The 3rd International Workshop on Automotive and Autonomous Vehicle Security
(AutoSec 2021)
[Paper] [bibtex]
@inproceedings{sato2021wip,
title={{WIP: Deployability Improvement, Stealthiness User Study, and Safety Impact Assessment on Real Vehicle for Dirty Road Patch Attack}},
author={Sato, Takami and Shen, Junjie and Wang, Ningfei and Jia, Yunhan Jack and Lin, Xue and Chen, Qi Alfred},
booktitle={Workshop on Automotive and Autonomous Vehicle Security (AutoSec)},
volume={2021},
pages={25},
year={2021}
}
2020
-
[USENIX Security'20] Interpretable Deep Learning under Fire
Xinyang Zhang, Ningfei Wang, Hua Shen, Shouling Ji, Xiapu Luo, Ting Wang
The 29th USENIX Security Symposium, Spring Quarter (USENIX Security 2020)
[Paper] [bibtex]
@inproceedings{zhang2020interpretable,
title={{Interpretable Deep Learning under Fire}},
author={Zhang, Xinyang and Wang, Ningfei and Shen, Hua and Ji, Shouling and Luo, Xiapu and Wang, Ting},
booktitle={29th $\{$USENIX$\}$ Security Symposium ($\{$USENIX$\}$ Security 20)},
year={2020}
}
2019
-
[USENIX Security'19] Rendered Private: Making GLSL Execution Uniform to Prevent WebGL-based Browser Fingerprinting
Shujiang Wu, Song Li, Yinzhi Cao, Ningfei Wang
The 28th USENIX Security Symposium, Fall Quarter (USENIX Security 2019)
[Paper] [bibtex]
@inproceedings{wu2019rendered,
title={{Rendered Private: Making GLSL Execution Uniform to Prevent WebGL-based Browser Fingerprinting}},
author={Wu, Shujiang and Li, Song and Cao, Yinzhi and Wang, Ningfei},
booktitle={28th USENIX Security Symposium (USENIX Security 19)},
pages={1645--1660},
year={2019}
}
2018
-
[AISec'18] Integration of Static and Dynamic Code Stylometry Analysis for Programmer De-anonymization
Ningfei Wang, Shouling Ji, Ting Wang
The 11th ACM Workshop on Artificial Intelligence and Security (AISec 2018)
Best Paper Award
[Paper] [bibtex]
@inproceedings{wang2018integration,
title={{Integration of Static and Dynamic Code Stylometry Analysis for Programmer De-anonymization}},
author={Wang, Ningfei and Ji, Shouling and Wang, Ting},
booktitle={Proceedings of the 11th ACM Workshop on Artificial Intelligence and Security},
pages={74--84},
year={2018}
}