Baojun Liu (刘保君)
入选国家级青年人才支持计划
国家网络空间安全科技重大专项项目负责人,国家重点研发计划青年科学家项目负责人
中关村实验室双聘专家,中国计算机学会网络与系统安全专委会副秘书长
清华大学 FIT楼 3-228室
个人主页:`https://liubaojun.org`(以个人主页信息为准,信息更新更及时)
lbj [at] tsinghua -dot- edu -dot- cn
Headline
- 主要研究领域:网络基础设施安全、人工智能犯罪对抗、运营商骨干网安全、具身智能等新兴领域安全。
- 每年大约招收 2~3 名博士研究生/硕士研究生。注意:有意向者务必提前邮件联系,并通过实习期考察。
- 欢迎对网络安全感兴趣,对技术充满好奇心,自我驱动力强,编程能力与英语能力优秀的同学与我联系。
- 长期对外招聘博士后、科研助理、工程师、客座研究生、访问学者以及实习生。欢迎向我投递简历。
About
清华大学,网络科学与网络空间研究院,网络和系统安全研究室主任(NISL),副教授(博士生导师)。中关村实验室双聘专家,中国计算机学会网络与系统安全专委会副秘书长。
2023年,入选国家级高层次青年人才支持计划;2022年获得ACM中国计算机安全分会“新星奖”;2020年入选清华大学“水木学者”计划。
作为项目负责人主持国家重点研发计划青年科学家项目、国家网络空间安全科技重大专项项目、十四五装备发展预研项目、国家自然科学基金项目、阿里巴巴创新研究计划AIR项目、CCF-腾讯犀牛鸟基金项目以及清华大学-中国电信联合研究项目。
教育及职业经历
- 清华大学 网络研究院 副教授 博士生导师, 2025.07-至今
- 清华大学 网络研究院 助理教授 博士生导师, 2022.12-2025.06
- 清华大学 网络研究院 博士后 助理研究员(水木学者), 2020.11-2022.11, 合作导师:段海新教授
- 加州大学伯克利分校 国际计算机科学研究所 高级访问学者, 2018.01-2019.01, 导师: Vern Paxson (ACM Fellow)
- 清华大学 计算机科学与技术系 博士生, 2015.09-2020.10, 导师: 刘莹研究员, 段海新教授
- 西安电子科技大学 电子工程学院 本科生, 2011.09-2015.07
研究兴趣
- 互联网基础设施安全
- 人工智能与大模型安全
- 互联网测量与分析
- 人工智能犯罪对抗
- 运营商骨干网安全
- 具身智能等新兴领域安全
2023年入选国家级高层次青年人才支持计划。国家重点研发计划“网络空间安全”重点专项青年科学家项目负责人,国际互联网治理领域权威机构ICANN 根服务器系统咨询委员会委员,跨亚欧重大国际合作项目Asi@Connect专家委员会委员。近年来,主持承担了国家重点研发计划、国家网络空间安全科技重大专项、国家自然科学基金、重点领域项目等十余项。主讲清华大学《计算机网络安全技术》课程,参与出版十四五网络空间安全学科规划教材《计算机网络安全实践教程》。
近年来,课题组累计于国际网络安全领域四大会议(IEEE S&P , USENIX Security, CCS, NDSS)及网络测量领域顶级会议(IMC、ACM SIGMETRICS)发表高水平研究论文五十余篇,多次获得具有重要影响力的国际奖项,其中包括国际互联网协会颁发的“网络研究应用奖”、NDSS 2019 会议杰出论文奖、CCS 2023会议杰出论文奖、DSN 2020会议最佳论文奖、NDSS 2026会议杰出论文奖(两项)、首届互联网基础技术贡献奖、ACM中国计算机安全分会“新星奖”等。
发表论文
个人主页:https://www.liubaojun.org/publications.html(信息更新更及时)
2026
Ruixuan Li, Xingyu Zhao, Yunyi Zhang, Baojun Liu, Jun Shao. Alias Equals Zone? Large-Scale and Stealthy Takeover of Domain Hosting Service via CNAME-Following Cross-Domain Verification, Proceedings of The 35th USENIX Security Symposium (USENIX Security), Seattle, WA, USA, August 2026.
Lijie Wu, Xiaoping Zhang, Mingxuan Liu, Yue Qin, Baojun Liu, Geng Hong, Zhenrui Zhang, Chenghui Wu, Hui Jiang. Shielding QR Codes: Unveiling the Real-World Illicit Promotion Behind Adversarial QR Code, Proceedings of The 35th USENIX Security Symposium (USENIX Security), Seattle, WA, USA, August 2026.
Yijing Liu, Yiming Zhang, Baojun Liu, Haixin Duan. Cracks in the Walled Garden: Dissecting the Gray-Market of Unauthorized iOS App Distribution via Ad Hoc Sideloading, Proceedings of The 35th USENIX Security Symposium (USENIX Security), Seattle, WA, USA, August 2026.
Shiming Liu, Yunyi Zhang, Chaoyi Lu, Baojun Liu, Shuhan Zhang, Donghong Sun, Yong Ma, Linjian Song. Good Cache, BAD Cache: Exploiting DNSSEC Validation Failures for DNS Cache Poisoning Attacks, Proceedings of The ACM SIGSAC Conference on Computer and Communications Security (CCS), Salt Lake City, UT, USA, October 2026.
Shiming Liu, Yunyi Zhang, Ruixuan Li, Shiyao Guo, Baojun Liu, Donghong Sun, Yong Ma, Linjian Song. The Trade-off Between Performance and Security: Exploring Vulnerabilities in DNS Task Queue Scheduling, Proceedings of The ACM SIGSAC Conference on Computer and Communications Security (CCS), Salt Lake City, UT, USA, October 2026.
Zhifan Jiang, Mingxuan Liu, Yue Qin, Baojun Liu. Breaking Free from Ivory Tower: Evaluating and Enhancing Real-world Chinese Underground Adversarial Jargon Detection, Proceedings of The IEEE Symposium on Security and Privacy (IEEE S&P), San Francisco, CA, USA, May 2026.
Shibo Cui, Mingxuan Liu, Baojun Liu, Haixin Duan, Ruixuan Li, Chaoyi Lu, Jin Zhang, Zhicheng Wang, Jinghua Bai. Characterizing Iran’s Phased National Internet Shutdown in 2025: A Progressive and Distributed Action, Proceedings of The ACM Web Conference (WWW), Dubai, UAE, June 2026.
Pei Chen, Geng Hong, Xinyi Wu, Mengying Wu, Zixuan Zhu, Mingxuan Liu, Baojun Liu, Mi Zhang, Min Yang. Unveiling the Resilience of LLM-Enhanced Search Engines Against Black-Hat SEO Manipulation, Proceedings of The ACM Web Conference (WWW), Dubai, UAE, June 2026.
Yuxiao Wu, Yunyi Zhang, Chaoyi Lu, Baojun Liu. Should I Trust You? Rethinking the Principle of Zone-Based Isolation DNS Bailiwick Checking, Proceedings of The 33rd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2026. (Distinguished Paper Award,杰出论文奖)
Ruixuan Li, Chaoyi Lu, Baojun Liu, Yanzhong Lin, Qingfeng Pan, Jun Shao. CoordMail: Exploiting SMTP Timeout and Command Interaction to Coordinate Email Middleware for Convergence Amplification Attack, Proceedings of The 33rd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2026.
Hanqing Zhao, Yiming Zhang, Lingyun Ying, Mingming Zhang, Baojun Liu, Haixin Duan, Zi-Quan You, Shuhao Zhang. Understanding the Status and Strategies of the Code Signing Abuse Ecosystem, Proceedings of The 33rd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2026.
Yunyi Zhang, Shibo Cui, Baojun Liu, Jingkai Yu, Min Zhang, Fan Shi, Han Zheng. Beyond Jailbreak: Unveiling Risks in LLM Applications Arising from Blurred Capability Boundaries, Proceedings of The 33rd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2026.
Mengying Wu, Geng Hong, Jiatao Chen, Mingxuan Liu, Baojun Liu, Min Yang. One Email, Many Faces: A Deep Dive into Identity Confusion in Email Aliases, Proceedings of The 33rd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2026. (Distinguished Paper Award,杰出论文奖)
2025
Ruixuan Li, Chaoyi Lu, Baojun Liu, Yanzhong Lin, Haixin Duan, Qingfeng Pan, Jun Shao. Understanding and Characterizing Intermediate Paths of Email Delivery: The Hidden Dependencies, Proceedings of The ACM Internet Measurement Conference (IMC), Madison, Wisconsin, USA, October 2025.
Mingming Zhang, Jinfeng Guo, Yiming Zhang, Shenglin Zhang, Baojun Liu, Hanqing Zhao, Xiang Li, Haixin Duan. Analyzing Compliance and Complications of Integrating Internationalized X.509 Certificates, Proceedings of The ACM Internet Measurement Conference (IMC), Madison, Wisconsin, USA, October 2025.
Jia Yao, Yiming Zhang, Baojun Liu, Zhan Liu, Mingming Zhang, Haixin Duan. Chaos in the Chain: Evaluate Deployment and Construction Compliance of Web PKI Certificate Chain, Proceedings of The ACM Internet Measurement Conference (IMC), Madison, Wisconsin, USA, October 2025.
Yijing Liu, Mingxuan Liu, Yiming Zhang, Baojun Liu, Jia Zhang, Geng Hong, Haixin Duan, Min Yang. Dive into the cloud: Unveiling the (Ab)usage of Serverless Cloud Function in the Wild, Proceedings of The ACM Internet Measurement Conference (IMC), Madison, Wisconsin, USA, October 2025.
Dashuai Wu, Yunyi Zhang, Baojun Liu, Xiang Li, Eihal Alowaisheq, Haixin Duan. Exploring and Analyzing Cross Layer DoS Attack Against UDP-based Services on Linux, Proceedings of The ACM Conference on Computer and Communications Security (CCS), Taipei, Taiwan, China, October 2025.
Xiang Li, Mingming Zhang, Zuyao Xu, Fasheng Miao, Yuqi Qiu, Baojun Liu, Jia Zhang, Xiaofeng Zhang, Haixin Duan, Zheli Liu, Yunhai Zhang, Dunqiu Fan. RebirthDay Attack: Reviving DNS Cache Poisoning with the Birthday Paradox, Proceedings of The ACM Conference on Computer and Communications Security (CCS), Taipei, Taiwan, China, October 2025.
Jinsong Chen, Mengying Wu, Geng Hong, Baichao An, Mingxuan Liu, Lei Zhang, Baojun Liu, Haixin Duan, Min Yang. Beyond Exploit Scanning: A Functional Change-Driven Approach to Remote Software Version Identification, Proceedings of The USENIX Security Symposium, Seattle, WA, USA, August 2025.
Shuhan Zhang, Shuai Wang, Li Chen, Dan Li, Baojun Liu. Your Shield is My Sword: A Persistent Denial-of-Service Attack via the Reuse of Unvalidated Caches in DNSSEC Validation, Proceedings of The USENIX Security Symposium, Seattle, WA, USA, August 2025. (Honorable Mention,杰出论文奖提名)
Mingxuan Liu, Yunyi Zhang, Lijie Wu, Baojun Liu, Geng Hong, Yinming Zhang, Hui Jiang, Jia Zhang, Haixin Duan, Min Zhang, Wei Guan, Fan Shi, Min Yang. NOKEScam: Understanding and Rectifying Non-Sense Keywords Spear Scam in Search Engines, Proceedings of The USENIX Security Symposium, Seattle, WA, USA, August 2025.
Mingming Zhang, Yunyi Zhang, Baojun Liu, Haixin Duan, Min Zhang, Fan Shi, Chengxi Xu. Misty Registry: An Empirical Study of Flawed Domain Registry Operation, Proceedings of The USENIX Security Symposium, Seattle, WA, USA, August 2025.
Bingyang Guo, Mingxuan Liu, Yihui Ma, Ruixuan Li, Fan Shi, Min Zhang, Baojun Liu, Chengxi Xu, Haixin Duan, Geng Hong, Min Yang, Qingfeng Pan. Email Cloaking: Deceiving Users and Spam Email Detectors with Invisible HTML Settings, Proceedings of The European Symposium on Research in Computer Security (ESORICS), Toulouse, France, September 2025.
Qihang Peng, Mingming Zhang, Deliang Chang, Jia Zhang, Baojun Liu, Haixin Duan. Decoding DNS Centralization: Measuring and Identifying NS Domains Across Hosting Providers, Proceedings of The 55th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Naples, Italy, June 2025.
Wuyuao Mai, Geng Hong, Pei Chen, Xudong Pan, Baojun Liu, Yuan Zhang, Haixin Duan, Min Yang. You Can’t Eat Your Cake and Have It Too: The Performance Degradation of LLMs with Jailbreak Defense, Proceedings of The ACM Web Conference (WWW), Sydney, Australia, May 2025.
Ruixuan Li, Chaoyi Lu, Baojun Liu, Yunyi Zhang, Geng Hong, Haixin Duan, Yanzhong Lin, Qingfeng Pan, Min Yang, Jun Shao. HADES Attack: Understanding and Evaluating Manipulation Risks of Email Blocklists, Proceedings of The 32nd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2025.
Mengying Wu, Geng Hong, Jinsong Chen, Qi Liu, Shujun Tang, Youhao Li, Baojun Liu, Haixin Duan, Min Yang. Revealing the Black Box of Device Search Engine: Scanning Assets, Strategies, and Ethical Consideration, Proceedings of The 32nd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2025.
2024
Fenglu Zhang, Baojun Liu, Chaoyi Lu, Yunpeng Xing, Haixin Duan, Ying Liu, Liyuan Chang. Investigating Deployment Issues of DNS Root Server Instances From a China-Wide View, IEEE Transactions on Dependable and Secure Computing (TDSC), Volume 21, Issue 6, November 2024.
Yunpeng Xing, Chaoyi Lu, Baojun Liu, Haixin Duan, Junzhe Sun, Zhou Li. Yesterday Once More: Global Measurement of Internet Traffic Shadowing Behaviors, Proceedings of The ACM Internet Measurement Conference (IMC), Madrid, Spain, November 2024.
Ruixuan Li, Shaodong Xiao, Baojun Liu, Yanzhong Lin, Haixin Duan, Qingfeng Pan, Jianjun Chen, Jia Zhang, Ximeng Liu, Xiuqi Lu, Jun Shao. Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider, Proceedings of The ACM Internet Measurement Conference (IMC), Madrid, Spain, November 2024.
Mingxuan Liu, Zhenglong Jin, Jiahai Yang, Baojun Liu, Haixin Duan, Ying Liu, Ximeng Liu, Shujun Tang. ChatScam: Unveiling the Rising Impact of ChatGPT on Domain Name Abuse, Proceedings of The 54th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Brisbane, Australia, June 2024.
Mingxuan Liu, Yiming Zhang, Xiang Li, Chaoyi Lu, Baojun Liu, Haixin Duan, Xiaofeng Zheng. Understanding the Implementation and Security Implications of Protective DNS Services, Proceedings of The 31st Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2024.
Xiang Li, Wei Xu, Baojun Liu, Mingming Zhang, Zhou Li, Jia Zhang, Deliang Chang, Xiaofeng Zheng, Chuhan Wang, Jianjun Chen, Haixin Duan, Qi Li. TuDoor Attack: Systematically Exploring and Exploiting Logic Vulnerabilities in DNS Response Pre-processing with Malformed Packets, Proceedings of The 45th IEEE Symposium on Security and Privacy (IEEE S&P), San Francisco, CA, USA, May 2024.
Yijing Liu, Yiming Zhang, Baojun Liu, Haixin Duan, Qiang Li, Mingxuan Liu, Ruixuan Li, Jia Yao. Tickets or Privacy? Understand the Ecosystem of Chinese Ticket Grabbing Apps, Proceedings of The USENIX Security Symposium, Philadelphia, PA, USA, August 2024.
Yunyi Zhang, Baojun Liu, Haixin Duan, Min Zhang, Xiang Li, Fan Shi, Chengxi Xu, Eihal Alowaisheq. Rethinking the Security Threats of Stale DNS Glue Records, Proceedings of The USENIX Security Symposium, Philadelphia, PA, USA, August 2024.
Yunyi Zhang, Mingxuan Liu, Baojun Liu, Yiming Zhang, Haixin Duan, Min Zhang, Hui Jiang, Yanzhe Li, Fan Shi. Into the Dark: Unveiling Internal Site Search Abused for Black Hat SEO, Proceedings of The USENIX Security Symposium, Philadelphia, PA, USA, August 2024.
Yunyi Zhang, Mingming Zhang, Baojun Liu, Zhan Liu, Jia Zhang, Haixin Duan, Min Zhang, Fan Shi, Chengxi Xu. Cross the Zone: Toward a Covert Domain Hijacking via Shared DNS Infrastructure, Proceedings of The USENIX Security Symposium, Philadelphia, PA, USA, August 2024.
Ruixuan Li, Baojun Liu, Chaoyi Lu, Haixin Duan, Jun Shao. A Worldwide View on the Reachability of Encrypted DNS Services, Proceedings of The ACM Web Conference (WWW), Singapore, May 2024.
2023
Fenglu Zhang, Baojun Liu, Eihal Alowaisheq, Jianjun Chen, Chaoyi Lu, Linjian Song, Yong Ma, Ying Liu, Haixin Duan, Min Yang. Silence is not Golden: Disrupting the Load Balancing of Authoritative DNS Servers, Proceedings of The 30th ACM Conference on Computer and Communications Security (CCS), Copenhagen, Denmark, November 2023. (Distinguished Paper Award,杰出论文奖)
Wei Xu, Xiang Li, Chaoyi Lu, Baojun Liu, Jia Zhang, Jianjun Chen, Tao Wan, Haixin Duan. TsuKing: Coordinating DNS Resolvers and Queries into Potent DoS Amplifiers, Proceedings of The 30th ACM Conference on Computer and Communications Security (CCS), Copenhagen, Denmark, November 2023.
Zhenrui Zhang, Geng Hong, Xiang Li, Zhuoqun Fu, Jia Zhang, Mingxuan Liu, Chuhan Wang, Jianjun Chen, Baojun Liu, Haixin Duan, Chao Zhang, Min Yang. Under the Dark: A Systematical Study of Stealthy Mining Pools (Ab)use in the Wild, Proceedings of The 30th ACM Conference on Computer and Communications Security (CCS), Copenhagen, Denmark, November 2023.
Fenglu Zhang, Yunyi Zhang, Baojun Liu, Eihal Alowaisheq, Lingyun Ying, Xiang Li, Zaifeng Zhang, Ying Liu, Haixin Duan, Min Zhang. Wolf in Sheep’s Clothing: Evaluating the Security Risks of the Undelegated Record on DNS Hosting Services, Proceedings of The 2023 Internet Measurement Conference (IMC), Montréal, Canada, October 2023.
Xiang Li, Chaoyi Lu, Baojun Liu, Qifan Zhang, Zhou Li, Haixin Duan, Qi Li. The Maginot Line: Attacking the Boundary of DNS Caching Protection, Proceedings of The 32nd USENIX Security Symposium (USENIX Security), Anaheim, CA, USA, August 2023.
Run Guo, Jianjun Chen, Yihang Wang, Keran Mu, Baojun Liu, Xiang Li, Chao Zhang, Haixin Duan, Jianping Wu. Temporal CDN-Convex Lens: A CDN-Assisted Practical Pulsing DDoS Attack, Proceedings of The 32nd USENIX Security Symposium (USENIX Security), Anaheim, CA, USA, August 2023.
Mingming Zhang, Xiang Li, Baojun Liu, Jianyu Lu, Yiming Zhang, Jianjun Chen, Haixin Duan, Shuang Hao, Xiaofeng Zheng. Detecting and Measuring Security Risks of Hosting-Based Dangling Domains, Proceedings of The 2023 ACM SIGMETRICS (ACM SIGMETRICS), Orlando, FL, USA, June 2023.
Xiang Li, Baojun Liu, Xuesong Bai, Mingming Zhang, Qifan Zhang, Zhou Li, Haixin Duan, Qi Li. Ghost Domain Reloaded: Vulnerable Links in the Domain Name Delegation and Revocation, Proceedings of The 30th Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2023.
2022
Mingxuan Liu, Yiming Zhang, Baojun Liu, Haixin Duan. Exploring the Characteristics and Security Risks of Emerging Emoji Domain Names, Proceedings of The 27th European Symposium on Research in Computer Security (ESORICS), Copenhagen, Denmark, September 2022.
Huikai Xu, Miao Yu, Yanhao Wang, Yue Liu, Qinsheng Hou, Zhenbang Ma, Haixin Duan, Jianwei Zhuge, Baojun Liu. Trampoline Over the Air: Breaking in IoT Devices Through MQTT Brokers, Proceedings of The 7th IEEE European Symposium on Security and Privacy (EuroS&P), Genoa, Italy, June 2022.
Xuewei Feng, Qi Li, Kun Sun, Ke Xu, Baojun Liu, Xiaofeng Zheng, Qiushi Yang, Haixin Duan, Zhiyun Qian. PMTUD is not Panacea: Revisiting IP Fragmentation Attacks against TCP, Proceedings of The 29th Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, April 2022.
Fenglu Zhang, Chaoyi Lu, Baojun Liu, Haixin Duan, Ying Liu. Measuring the Practical Effect of DNS Root Server Instances: A China-Wide Case Study, Proceedings of Passive and Active Measurement Conference (PAM), Virtual Event, March 2022.
Qinge Xie, Shujun Tang, Xiaofeng Zheng, Qingran Lin, Baojun Liu, Haixin Duan, Frank Li. Building an Open, Robust, and Stable Voting-Based Domain Top List, Proceedings of The 31st USENIX Security Symposium (USENIX Security), Boston, MA, USA, August 2022.
Chuhan Wang, Kaiwen Shen, Minglei Guo, Yuxuan Zhao, Mingming Zhang, Jianjun Chen, Baojun Liu, Xiaofeng Zheng, Haixin Duan, Yanzhong Lin, Qingfeng Pan. A Large-scale and Longitudinal Measurement Study of DKIM Deployment, Proceedings of The 31st USENIX Security Symposium (USENIX Security), Boston, MA, USA, August 2022.
2021
Yiming Zhang, Baojun Liu, Chaoyi Lu, Zhou Li, Haixin Duan, Jiachen Li, Zaifeng Zhang. Rusted Anchors: A National Client-Side View of Hidden Root CAs in the Web PKI Ecosystem, Proceedings of The 28th ACM Conference on Computer and Communications Security (CCS), Seoul, South Korea, November 2021.
Kaiwen Shen, Chuhan Wang, Minglei Guo, Xiaofeng Zheng, Chaoyi Lu, Baojun Liu, Yuxuan Zhao, Shuang Hao, Haixin Duan, Qingfeng Pan, Min Yang. Weak Links in Authentication Chains: A Large-scale Analysis of Email Sender Spoofing Attacks, Proceedings of The 30th USENIX Security Symposium (USENIX Security), Vancouver, BC, Canada, August 2021.
Chaoyi Lu, Baojun Liu, Yiming Zhang, Zhou Li, Fenglu Zhang, Haixin Duan, Ying Liu, Joann Qiongna Chen, Jinjin Liang, Zaifeng Zhang, Shuang Hao, Min Yang. From WHOIS to WHOWAS: A Large-Scale Measurement Study of Domain Registration Privacy under the GDPR, Proceedings of The 28th Annual Network and Distributed System Security Symposium (NDSS), Virtual Event, February 2021.
Mingxuan Liu, Yiming Zhang, Baojun Liu, Zhou Li, Haixin Duan, Donghong Sun. Detecting and Characterizing SMS Spearphishing Attacks, Proceedings of The 37th Annual Computer Security Applications Conference (ACSAC), Virtual Event, USA, December 2021.
Deliang Chang, Shanshan Hao, Zhou Li, Baojun Liu, Xing Li. DNSWeight: Quantifying Country-Wise Importance of Domain Name System, IEEE Access, Volume 9, March 2021.
2020
Mingming Zhang, Xiaofeng Zheng, Kaiwen Shen, Ziqiao Kong, Chaoyi Lu, Yu Wang, Haixin Duan, Shuang Hao, Baojun Liu, Min Yang. Talking with Familiar Strangers: An Empirical Study on HTTPS Context Confusion Attacks, Proceedings of The 27th ACM Conference on Computer and Communications Security (CCS), Orlando, FL, USA, November 2020.
Yiming Zhang, Baojun Liu, Chaoyi Lu, Zhou Li, Haixin Duan, Shuang Hao, Mingxuan Liu, Ying Liu, Dong Wang, Qiang Li. Lies in the Air: Characterizing Fake-base-station Spam Ecosystem in China, Proceedings of The 27th ACM Conference on Computer and Communications Security (CCS), Orlando, FL, USA, November 2020.
Xiaofeng Zheng, Chaoyi Lu, Jian Peng, Qiushi Yang, Dongjie Zhou, Baojun Liu, Keyu Man, Shuang Hao, Haixin Duan, Zhiyun Qian. Poison over Troubled Forwarders: A Cache Poisoning Attack Targeting DNS Forwarding Devices, Proceedings of The 29th USENIX Security Symposium (USENIX Security), Boston, MA, USA, August 2020.
Weizhong Li, Kaiwen Shen, Run Guo, Baojun Liu, Jia Zhang, Haixin Duan, Shuang Hao, Xiarun Chen, Yao Wang. CDN Backfired: Amplification Attacks Based on HTTP Range Requests, Proceedings of The 50th IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Virtual Event, June 2020.
Run Guo, Weizhong Li, Baojun Liu, Shuang Hao, Jia Zhang, Haixin Duan, Kaiwen Shen, Jianjun Chen, Ying Liu. IP Fragmentation Attacks against DNS, Proceedings of The 27th Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2020.
2019
Chaoyi Lu, Baojun Liu, Zhou Li, Shuang Hao, Haixin Duan, Mingming Zhang, Chunying Leng, Ying Liu, Zaifeng Zhang, Jianping Wu. An End-to-End, Large-Scale Measurement of DNS-over-Encryption: How Far Have We Come? Proceedings of The 2019 Internet Measurement Conference (IMC), Amsterdam, Netherlands, October 2019.
Kun Du, Hao Yang, Zhou Li, Haixin Duan, Shuang Hao, Baojun Liu, Yuxiao Ye, Mingxuan Liu, Xiaodong Su, Guang Liu, Zhifeng Geng, Zaifeng Zhang, Jinjin Liang. TL;DR Hazard: A Comprehensive Study of Levelsquatting Scams, Proceedings of The 15th International Conference on Security and Privacy On Communication Networks (SecureComm), Orlando, FL, USA, October 2019.
Baojun Liu, Zhou Li, Peiyuan Zong, Chaoyi Lu, Haixin Duan, Ying Liu, Sumayah Alrwais, XiaoFeng Wang, Shuang Hao, Yaoqi Jia, Yiming Zhang, Kai Chen, Zaifeng Zhang. TraffickStop: Detecting and Measuring Illicit Traffic Monetization Through Large-scale DNS Analysis, Proceedings of The 4th IEEE European Symposium on Security and Privacy (IEEE EuroS&P), Stockholm, Sweden, June 2019.
Eihal Alowaisheq, Peng Wang, Sumayah Alrwais, Xiaojing Liao, XiaoFeng Wang, Tasneem Alowaisheq, Xianghang Mi, Siyuan Tang, Baojun Liu. Cracking the Wall of Confinement: Understanding and Analyzing Malicious Domain Takedowns, Proceedings of The 26th ISOC Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2019.
Xianghang Mi, Xuan Feng, Xiaojing Liao, Baojun Liu, Xiaofeng Wang, Feng Qian, Zhou Li, Sumayah Alrwais, Limin Sun, Ying Liu. Resident Evil: Understanding Residential IP Proxy as a Dark Service, Proceedings of The 40th IEEE Symposium on Security and Privacy (IEEE S&P), San Francisco, CA, USA, May 2019.
2018
Run Guo, Jianjun Chen, Baojun Liu, Jia Zhang, Chao Zhang, Haixin Duan, Tao Wan, Jian Jiang, Shuang Hao, Yaoqi Jia. Abusing CDNs for Fun and Profit: Security Issues in CDNs’ Origin Validation, Proceedings of The 37th IEEE International Symposium on Reliable Distributed Systems (SRDS), Bahia, Brazil, October 2018.
Mingming Zhang, Baojun Liu, Chaoyi Lu, Jia Zhang, Shuang Hao, Haixin Duan. Measuring Privacy Threats in China-Wide Mobile Networks, Proceedings of The 8th USENIX Workshop on Free and Open Communications on the Internet (FOCI), Baltimore, USA, August 2018.
Baojun Liu, Chaoyi Lu, Haixin Duan, Ying Liu, Zhou Li, Shuang Hao, Min Yang. Who Is Answering My Queries: Understanding and Characterizing Interception of the DNS Resolution Path, Proceedings of The 27th USENIX Security Symposium (USENIX Security), Baltimore, USA, August 2018.
Baojun Liu, Chaoyi Lu, Zhou Li, Ying Liu, Haixin Duan, Shuang Hao, Zaifeng Zhang. A Reexamination of Internationalized Domain Names: the Good, the Bad and the Ugly, Proceedings of The 48th IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Luxembourg City, Luxembourg, June 2018.
2017
- Daiping Liu, Zhou Li, Kun Du, Haining Wang, Baojun Liu, Haixin Duan. Don’t Let One Rotten Apple Spoil the Whole Barrel: Towards Automated Detection of Shadowed Domains, Proceedings of The 24th ACM Conference on Computer and Communications Security (CCS), Dallas, TX, USA, October 2017.
教学工作
- 清华大学,2025年秋季学期,《互联网体系结构及其安全基础》,研究生,选课人数约15人(合讲教师)
- 清华大学,2025年夏季学期,《网络安全攻防实践》,本科生,选课人数约10人(合讲教师)
清华大学,2025年春季学期,《计算机网络安全技术》,研究生,选课人数约20人(主讲教师)
- 清华大学,2024年秋季学期,《互联网体系结构及其安全基础》,研究生,选课人数约25人(合讲教师)
- 清华大学,2024年夏季学期,《网络安全攻防实践》,本科生,选课人数约15人(合讲教师)
- 清华大学,2023年秋季学期,《互联网体系结构及其安全基础》,研究生,选课人数约25人(合讲教师)
- 清华大学,2023年夏季学期,《网络安全攻防实践》,本科生,选课人数约15人(合讲教师)
- 清华大学,2022年秋季学期,《下一代互联网》网络安全专题,研究生,选课人数约10人(客座讲师)
- 清华大学,2021年秋季学期,《网络测量技术》网络测量前沿,研究生,选课人数约15人(客座讲师)
- 清华大学,2020年秋季学期,《网络测量技术》网络测量前沿,研究生,选课人数约15人(客座讲师)
- 清华大学,2020年秋季学期,《下一代互联网》网络安全专题,研究生,选课人数约20人(客座讲师)
- 清华大学,2019年秋季学期,《网络测量技术》网络测量前沿,研究生,选课人数约15人(客座讲师)
- 清华大学,2019年秋季学期,《计算机网络安全技术》域名系统安全专题,研究生,选课人数约30人(客座讲师)
- 清华大学,2019年秋季学期,《下一代互联网》网络安全专题,研究生,选课人数约15人(客座讲师)
社会兼职
- 中国计算机学会网络与系统安全专委会 副秘书长
- ICANN 根服务器系统安全与稳定咨询委员会 委员
- 跨亚欧重大国际合作项目 Asi@Connect 专家委员会 委员
奖励与荣誉
- 2026, 国际网络安全领域顶级会议 NDSS 会议杰出论文奖(DNS Bailiwick)
- 2026, 国际网络安全领域顶级会议 NDSS 会议杰出论文奖(Email Aliases)
- 2025, 中关村实验室先进工作者
- 2025, 国际网络安全领域顶级会议 USENIX Security 会议杰出论文奖提名(Honorable Mention)
- 2024, 清华大学校级先进工作者
- 2024, 中关村实验室先进工作者
- 2024, 清华大学网络研究院先进工作者
- 2023, 清华大学网络研究院先进工作者
- 2023, 国家级高层次青年人才支持计划
- 2023, 首届“互联网基础技术贡献奖”
- 2023, 国际网络安全领域顶级会议 ACM CCS 会议杰出论文奖
- 2022, ACM中国计算机安全分会“新星奖”
- 2022, 清华大学“优秀博士后”提名奖
- 2020, 清华大学“水木学者”
- 2020, 国际互联网协会与互联网研究任务组 网络研究应用奖(ANRP)
- 2020, 国际网络可靠系统领域顶级会议 IEEE/IFIP DSN 会议最佳论文奖
- 2019, 国际网络安全领域顶级会议 NDSS 会议杰出论文奖
- 2019, 国际网络测量领域顶级会议 ACM IMC 会议最佳论文奖提名、社区贡献奖提名
