师资队伍
bob777@sjtu.edu.cn 闵行区东川路800号软件大楼专家楼5209 个人主页

陈力波

工程师

毕业于清华大学网络与信息安全实验室(NISL),是CTF战队“蓝莲花”初创成员,获Defcon CTF 2012全球资格赛排名19。主要擅长漏洞挖掘和利用、渗透测试,在IoT、AI、区块链等领域开展前沿安全技术研究。安全研究成果发表在多个国际顶级会议(如USENIX Security、ACM CCS、IJCAI等),得到国内外知名厂商致谢(如中国移动、D-Link、Netgear、TP-Link等)及上百个CVE、CNVD漏洞编号,并多次在知名漏洞破解大赛上获奖,包括CNCERT 2018智能破解挑战赛优胜奖、“天府杯”2018 设备破赛优胜奖、“天府杯”2019最佳原创漏洞复现奖、2020年极棒漏洞挑战赛的破解成功奖和最具人气奖。此外,长期参与白帽社区,编写或翻译了《Metasploit渗透测试魔鬼训练营》、《Python黑帽子:黑客与渗透测试编程之道》等多部安全领域畅销书籍。

  • 研究兴趣
  • 教育背景
  • 工作经验
  • 教授课程
  • 论文发表
  • 项目资助
  • 获奖信息
  • 学术服务
软件与系统安全,物联网安全,区块链安全,人工智能安全

物联网安全与漏洞挖掘利用、漏洞挖掘与分析、工科创II--CTF和漏洞挖掘实战


  1. SFuzz: Slice-based Fuzzing for Real-Time Operating Systems (To Appear).

    Libo Chen, Quanpu Cai, Zhenbang Ma, Yanhao Wang, Hong Hu, Minghang Shen, Yue Liu, Shanqing Guo, Haixin Duan, Kaida Jiang, and Zhi Xue.

    In Proceedings of the 29th ACM Conference on Computer and Communications Security (ACM CCS 2022).

     

  2. 3E-Solver: An Effortless, Easy-to-Update, and End-to-End Solver with Semi-Supervised Learning for Breaking Text-Based Captchas (To Appear).

    Xianwen Deng, Ruijie Zhao, Yanhao Wang, Libo Chen, Yijun Wang, and Zhi Xue.

  3. In Proceedings of the 31st International Joint Conference on Artificial Intelligence (IJCAI 2022).


  4. Flow Sequence-Based Anonymity Network Traffic Identification with Residual Graph Convolutional Networks (To Appear).

    Ruijie Zhao, Xianwen Deng, Yanhao Wang, Libo Chen, Ming Liu, Zhi Xue, and Yijun Wang.

    In Proceedings of the 30th IEEE/ACM International Symposium on Quality of Service (IWQoS 2022).


  5. Sharing More and Checking Less: Leveraging Common Input Keywords to Detect Bugs in Embedded Systems.

    Libo Chen, Yanhao Wang, Quanpu Cai, Yunfan Zhan, Hong Hu, Jiaqi Linghu, Qinsheng Hou, Chao Zhang, Haixin Duan, and Zhi Xue.

     In Proceedings of the 30th USENIX Security Symposium (USENIX Security 2021).


  6. Online Intrusion Detection for IoT Systems with Full Bayesian Possibilistic Clustering and Ensembled Fuzzy Classifiers.

    Fangqi Li, Ruijie Zhao, Shilin WANG, Libo Chen, Alan Wee-Chung Liew, Weiping Ding.

    IEEE Transactions on Fuzzy Systems, Early Access, doi:10.1109/TFUZZ.2022.3165390.


  7. A Semi-Supervised Deep Learning-Based Solver for Breaking Text-Based CAPTCHAs.

    Xianwen Deng, Ruijie Zhao, Zhi Xue, Ming Liu, Libo Chen, and Yijun Wang.

    In Proceedings of IEEE International Conference on Trust, Security and Privacy in Computing and Communications (TrustCom 2022).


  8. 基于混合分析的Java反序列化利用链挖掘方法.

    武永兴, 陈力波*, 姜开达.

    网络与信息安全学报, 2022, 8(2): 160-174.

上海市“科技创新行动计划”高新技术领域项目--工业环境下5G安全攻防关键技术研究

教育部产学合作协同育人项目--教学内容和课程体系改革

公安部重点实验室开放课题—针对泛在互联终端的脆弱性自动化挖掘



Copyright © 2017 - 2019 上海交通大学网络空间安全学院 沪ICP备05052060号