CS660 · Fall 2026
The schedule is tentative and subject to change! Always check the assignments the week before each class.

Date Details
09/08 Orientation and logistics
Assigned papers:
• None! Please make sure to attend class, as important logistics will be discussed!
Suggested reading:
Introduction to Information Assurance
09/10 Overview of USENIX Security'26
Assigned papers (optional):
• Pick a paper from USENIX Security'26 program and read it, to be ready for a reflection. We will be overviewing the program.
09/15 Essential Crypto
Assigned papers:
• None! You can work on your project proposals!
09/17 Essential Crypto (Continued)
Assigned papers:
• None! You can work on your project proposals!
Homework 1 released after class. Due in two weeks!
09/22 Anonymous Communications
Assigned papers (pick one for each session; the order of papers is arbitrary!):
Locating Hidden Servers
Nymble: Blocking Misbehaving Users in Anonymizing Networks
RAPTOR: Routing Attacks on Privacy in Tor
Dissent: Accountable Anonymous Group Messaging
Other useful resources:
Original Tor Design
A decent collection of anonymity-related papers
09/24 Anonymous Communications (Continued)
Pick another paper from last class (above) and read it, to be ready for a reflection.
09/29 Project Proposal Day
Tasks:
• Introduce your project in class in 2-3 minutes to get feedback and suggestion from others.
• Submit your 1-page project proposal on Canvas (by 10/06)
10/01 Censorship, Surveillance, and Wiretapping
Assigned papers:
MassBrowser: Unblocking the Censored Web for the Masses, by the Masses
The Parrot is Dead: Observing Unobservable Network Communications
The Waterfall of Liberty: Decoy Routing Circumvention that Resists Routing Attacks
10/06 Censorship, Surveillance, and Wiretapping (continued)
Assigned papers:
How the Great Firewall of China Detects and Blocks Fully Encrypted Traffic
How China Detects and Blocks Shadowsocks
Quack: Scalable Remote Measurement of Application-Layer Censorship
• Additional resource: A decent collection of censorship papers
Homework 2 released after class. Due in two weeks!
10/08 Data Privacy
Assigned papers:
BLENDER: Enabling Local Search with a Hybrid Differential Privacy Model
Private Information Retrieval
Quantifying Location Privacy
10/13 Privacy Leakage in Machine Learning
Assigned papers:
Membership Inference Attacks Against Machine Learning Models
Model Inversion Attacks that Exploit Confidence Information and Basic Countermeasures
Stealing Machine Learning Models via Prediction APIs
Optional reading:
Privacy Risk in Machine Learning: Analyzing the Connection to Overfitting
Machine Learning with Membership Privacy using Adversarial Regularization
MemGuard: Defending against Black-Box Membership Inference Attacks via Adversarial Examples
10/15 Privacy-Preserving Machine Learning
Assigned papers:
Deep Learning with Differential Privacy
Machine Learning with Membership Privacy using Adversarial Regularization
MemGuard: Defending against Black-Box Membership Inference Attacks via Adversarial Examples
Optional reading:
Privacy-preserving Prediction
ML-Leaks: Model and Data Independent Membership Inference Attacks and Defenses on Machine Learning Models
10/20 Machine Learning Security
Assigned papers:
Stealing the Decoding Algorithms of Language Models
Manipulating Machine Learning: Poisoning Attacks and Countermeasures for Regression Learning
DeepXplore: Automated Whitebox Testing of Deep Learning Systems
Machine Learning Models that Remember Too Much
Optional reading:
Certified Robustness to Adversarial Examples with Differential Privacy
10/22 Trustworthy Federated Learning
Assigned papers:
Comprehensive Privacy Analysis of Deep Learning: Stand-alone and Federated Learning under Passive and Active White-box Inference Attacks
How To Backdoor Federated Learning
Back to the Drawing Board: A Critical Evaluation of Poisoning Attacks on Production Federated Learning
Ditto: Fair and Robust Federated Learning Through Personalization
Homework 3 released after class. Due in two weeks!
10/27 Bitcoin and Blockchain
Assigned papers:
• None!
10/29 Bitcoin and Blockchain (Continued)
Assigned papers:
Hijacking Bitcoin: Routing Attacks on Cryptocurrencies
Eclipse Attacks on Bitcoin’s Peer-to-Peer Network
Catena: Efficient Non-equivocation via Bitcoin
11/05 Intrusion Detection
Assigned papers:
BotMiner: Clustering Analysis of Network Traffic for Protocol- and Structure-Independent Botnet Detection
Outside the Closed World: On Using Machine Learning For Network Intrusion Detection
Kitsune: An Ensemble of Autoencoders for Online Network Intrusion Detection
DeepCorr: Strong Flow Correlation Attacks on Tor Using Deep Learning
Fingerprinting Electronic Control Units for Vehicle Intrusion Detection
11/10 Covert Channels + Side-Channel Attacks
Assigned papers:
Side-Channel Leaks in Web Applications: a Reality Today, a Challenge Tomorrow
Hello from the Other Side: SSH over Robust Cache Covert Channels in the Cloud
Exploiting a Thermal Side Channel for Power Attacks in Multi-Tenant Data Centers
11/12 IoT/Embedded Systems Security
Assigned papers:
From the Aether to the Ethernet—Attacking the Internet using Broadcast Digital Television
Understanding the Mirai Botnet
Experimental Security Analysis of a Modern Automobile
Security Analysis of Emerging Smart Home Applications
11/17 Authentication
Assigned papers:
The Tangled Web of Password Reuse
Multi-touch Authentication Using Hand Geometry and Behavioral Information
TrustBase: An Architecture to Repair and Strengthen Certificate-based Authentication
11/19 Malware
Assigned papers:
Data Breaches, Phishing, or Malware? Understanding the Risks of Stolen Credentials
MAMADROID: Detecting Android Malware by Building Markov Chains of Behavioral Models
Sunrise to Sunset: Analyzing the End-to-end Life Cycle and Effectiveness of Phishing Attacks at Scale
Click Trajectories: End-to-End Analysis of the Spam Value Chain
11/24 Online Social Networks
Assigned papers:
Social Networking with Frientegrity: Privacy and Integrity with an Untrusted Provider
Detecting Fake Accounts in Online Social Networks at the Time of Registrations
Automated Crowdturfing Attacks and Defenses in Online Review Systems
Optional reading:
Investigating Ad Transparency Mechanisms in Social Media: A Case Study of Facebook’s Explanations
11/26 Thanksgiving Holiday
12/01 Overview of other topics
12/03 Final Project Presentations
12/08 Final Project Presentations
12/10 Final Project Presentations
12/15 Final Project Presentations