Baojun Liu (刘保君)
Institute for Network Sciences and Cyberspace, Tsinghua University
Joint-appointed Expert, Zhongguancun Laboratory
FIT 3-228, Tsinghua University, Beijing, China 100084
Homepage: `https://liubaojun.org` (please refer to the homepage for the most up-to-date information)
lbj [at] tsinghua -dot- edu -dot- cn
Headline
Main research areas: network infrastructure security, AI and large language model security, internet measurement and security analytics, cybercrime detection, and emerging-domain security such as embodied intelligence.
Recruits approximately 2-3 PhD/Master students each year. Note: Those interested must contact me by email in advance and go through a probationary period.
Welcome students who are interested in network security, curious about technology, self-driven, and excel in programming and English to contact me.
Openings for postdoctoral researchers, research assistants, engineers, visiting students, visiting scholars, and interns. Please send me your resume if interested.
About
Associate Professor (PhD supervisor) at the Network and System Security Lab (NISL), Institute for Network Sciences and Cyberspace, Tsinghua University. Joint-appointed Expert at Zhongguancun Laboratory, and Deputy Secretary-General of the CCF Technical Committee on Network and System Security.
In 2023, selected for the Top Young Scholar of the National “Ten Thousand Talent Program”.
In 2022, received the ACM China Computer Security Association “Rising Star Award”.
In 2020, selected for Tsinghua University’s “Shuimu Scholar Program”.
As project leader, has hosted the Youth Scientist Project of the National Key R&D Program, the National Science and Technology Major Project on Cyberspace Security, National Natural Science Foundation of China projects, Alibaba Innovative Research (AIR) Program projects, CCF-Tencent RhinoBird Foundation projects, and joint research projects between Tsinghua University and China Telecom.
Research Interests
- Internet Infrastructure Security
- AI and Large Language Model Security
- Internet Measurement and Analysis
- Cybercrime Detection and Countermeasures
- Carrier Backbone Network Security
- Emerging-domain Security (e.g., Embodied Intelligence)
Education
- Ph.D. in Computer Science, Tsinghua University, China. 2015-2020. Advisor: Prof. Ying Liu and Prof. Haixin Duan, Dissertation: Research on Security of Internet Domain Name System.
- Senior Visiting Scholar, International Computer Science Institute, University of California, Berkeley, USA, 2018-2019. Advisor: Prof. Vern Paxson (ACM Fellow).
- B.S. in Electronic Engineering, XiDian University, China. 2011-2015.
Professional Experience
- Associate Professor, Tsinghua University, China, 2025 - present.
- Assistant Professor, Tsinghua University, China, 2022 - 2025.
- Postdoctoral Researcher (Shuimu Scholar), Tsinghua University, China, 2020 - 2022.
Conference and Journal Papers
2026
Ruixuan Li, Xingyu Zhao, Yunyi Zhang, Baojun Liu and Jun Shao. Alias Equals Zone? Large-Scale and Stealthy Takeover of Domain Hosting Service via CNAME-Following Cross-Domain Verification, Proceedings of The 35th USENIX Security Symposium (USENIX Security), Seattle, WA, USA, August 2026.
Lijie Wu, Xiaoping Zhang, Mingxuan Liu, Yue Qin, Baojun Liu, Geng Hong, Zhenrui Zhang, Chenghui Wu and Hui Jiang. Shielding QR Codes: Unveiling the Real-World Illicit Promotion Behind Adversarial QR Code, Proceedings of The 35th USENIX Security Symposium (USENIX Security), Seattle, WA, USA, August 2026.
Yijing Liu, Yiming Zhang, Baojun Liu and Haixin Duan. Cracks in the Walled Garden: Dissecting the Gray-Market of Unauthorized iOS App Distribution via Ad Hoc Sideloading, Proceedings of The 35th USENIX Security Symposium (USENIX Security), Seattle, WA, USA, August 2026.
Shiming Liu, Yunyi Zhang, Chaoyi Lu, Baojun Liu, Shuhan Zhang, Donghong Sun, Yong Ma and Linjian Song. Good Cache, BAD Cache: Exploiting DNSSEC Validation Failures for DNS Cache Poisoning Attacks, Proceedings of The ACM SIGSAC Conference on Computer and Communications Security (CCS), Salt Lake City, UT, USA, October 2026.
Shiming Liu, Yunyi Zhang, Ruixuan Li, Shiyao Guo, Baojun Liu, Donghong Sun, Yong Ma and Linjian Song. The Trade-off Between Performance and Security: Exploring Vulnerabilities in DNS Task Queue Scheduling, Proceedings of The ACM SIGSAC Conference on Computer and Communications Security (CCS), Salt Lake City, UT, USA, October 2026.
Zhifan Jiang, Mingxuan Liu, Yue Qin and Baojun Liu. Breaking Free from Ivory Tower: Evaluating and Enhancing Real-world Chinese Underground Adversarial Jargon Detection, Proceedings of The IEEE Symposium on Security and Privacy (IEEE S&P), San Francisco, CA, USA, May 2026.
Shibo Cui, Mingxuan Liu, Baojun Liu, Haixin Duan, Ruixuan Li, Chaoyi Lu, Jin Zhang, Zhicheng Wang and Jinghua Bai. Characterizing Iran’s Phased National Internet Shutdown in 2025: A Progressive and Distributed Action, Proceedings of The ACM Web Conference (WWW), Dubai, UAE, June 2026.
Pei Chen, Geng Hong, Xinyi Wu, Mengying Wu, Zixuan Zhu, Mingxuan Liu, Baojun Liu, Mi Zhang and Min Yang. Unveiling the Resilience of LLM-Enhanced Search Engines Against Black-Hat SEO Manipulation, Proceedings of The ACM Web Conference (WWW), Dubai, UAE, June 2026.
Yuxiao Wu, Yunyi Zhang, Chaoyi Lu and Baojun Liu. Should I Trust You? Rethinking the Principle of Zone-Based Isolation DNS Bailiwick Checking, Proceedings of The 33rd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2026. (Distinguished Paper Award)
Ruixuan Li, Chaoyi Lu, Baojun Liu, Yanzhong Lin, Qingfeng Pan and Jun Shao. CoordMail: Exploiting SMTP Timeout and Command Interaction to Coordinate Email Middleware for Convergence Amplification Attack, Proceedings of The 33rd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2026.
Hanqing Zhao, Yiming Zhang, Lingyun Ying, Mingming Zhang, Baojun Liu, Haixin Duan, Zi-Quan You and Shuhao Zhang. Understanding the Status and Strategies of the Code Signing Abuse Ecosystem, Proceedings of The 33rd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2026.
Yunyi Zhang, Shibo Cui, Baojun Liu, Jingkai Yu, Min Zhang, Fan Shi and Han Zheng. Beyond Jailbreak: Unveiling Risks in LLM Applications Arising from Blurred Capability Boundaries, Proceedings of The 33rd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2026.
Mengying Wu, Geng Hong, Jiatao Chen, Mingxuan Liu, Baojun Liu and Min Yang. One Email, Many Faces: A Deep Dive into Identity Confusion in Email Aliases, Proceedings of The 33rd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2026. (Distinguished Paper Award)
2025
Ruixuan Li, Chaoyi Lu, Baojun Liu, Yanzhong Lin, Haixin Duan, Qingfeng Pan and Jun Shao. Understanding and Characterizing Intermediate Paths of Email Delivery: The Hidden Dependencies, Proceedings of The ACM Internet Measurement Conference (IMC), Madison, Wisconsin, USA, October 2025.
Mingming Zhang, Jinfeng Guo, Yiming Zhang, Shenglin Zhang, Baojun Liu, Hanqing Zhao, Xiang Li and Haixin Duan. Analyzing Compliance and Complications of Integrating Internationalized X.509 Certificates, Proceedings of The ACM Internet Measurement Conference (IMC), Madison, Wisconsin, USA, October 2025.
Jia Yao, Yiming Zhang, Baojun Liu, Zhan Liu, Mingming Zhang and Haixin Duan. Chaos in the Chain: Evaluate Deployment and Construction Compliance of Web PKI Certificate Chain, Proceedings of The ACM Internet Measurement Conference (IMC), Madison, Wisconsin, USA, October 2025.
Yijing Liu, Mingxuan Liu, Yiming Zhang, Baojun Liu, Jia Zhang, Geng Hong, Haixin Duan and Min Yang. Dive into the cloud: Unveiling the (Ab)usage of Serverless Cloud Function in the Wild, Proceedings of The ACM Internet Measurement Conference (IMC), Madison, Wisconsin, USA, October 2025.
Dashuai Wu, Yunyi Zhang, Baojun Liu, Xiang Li, Eihal Alowaisheq and Haixin Duan. Exploring and Analyzing Cross Layer DoS Attack Against UDP-based Services on Linux, Proceedings of The ACM Conference on Computer and Communications Security (CCS), Taipei, Taiwan, China, October 2025.
Xiang Li, Mingming Zhang, Zuyao Xu, Fasheng Miao, Yuqi Qiu, Baojun Liu, Jia Zhang, Xiaofeng Zhang, Haixin Duan, Zheli Liu, Yunhai Zhang and Dunqiu Fan. RebirthDay Attack: Reviving DNS Cache Poisoning with the Birthday Paradox, Proceedings of The ACM Conference on Computer and Communications Security (CCS), Taipei, Taiwan, China, October 2025.
Jinsong Chen, Mengying Wu, Geng Hong, Baichao An, Mingxuan Liu, Lei Zhang, Baojun Liu, Haixin Duan and Min Yang. Beyond Exploit Scanning: A Functional Change-Driven Approach to Remote Software Version Identification, Proceedings of The USENIX Security Symposium, Seattle, WA, USA, August 2025.
Shuhan Zhang, Shuai Wang, Li Chen, Dan Li and Baojun Liu. Your Shield is My Sword: A Persistent Denial-of-Service Attack via the Reuse of Unvalidated Caches in DNSSEC Validation, Proceedings of The USENIX Security Symposium, Seattle, WA, USA, August 2025. (Honorable Mention)
Mingxuan Liu, Yunyi Zhang, Lijie Wu, Baojun Liu, Geng Hong, Yinming Zhang, Hui Jiang, Jia Zhang, Haixin Duan, Min Zhang, Wei Guan, Fan Shi and Min Yang. NOKEScam: Understanding and Rectifying Non-Sense Keywords Spear Scam in Search Engines, Proceedings of The USENIX Security Symposium, Seattle, WA, USA, August 2025.
Mingming Zhang, Yunyi Zhang, Baojun Liu, Haixin Duan, Min Zhang, Fan Shi and Chengxi Xu. Misty Registry: An Empirical Study of Flawed Domain Registry Operation, Proceedings of The USENIX Security Symposium, Seattle, WA, USA, August 2025.
Bingyang Guo, Mingxuan Liu, Yihui Ma, Ruixuan Li, Fan Shi, Min Zhang, Baojun Liu, Chengxi Xu, Haixin Duan, Geng Hong, Min Yang and Qingfeng Pan. Email Cloaking: Deceiving Users and Spam Email Detectors with Invisible HTML Settings, Proceedings of The European Symposium on Research in Computer Security (ESORICS), Toulouse, France, September 2025.
Qihang Peng, Mingming Zhang, Deliang Chang, Jia Zhang, Baojun Liu and Haixin Duan. Decoding DNS Centralization: Measuring and Identifying NS Domains Across Hosting Providers, Proceedings of The 55th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Naples, Italy, June 2025.
Wuyuao Mai, Geng Hong, Pei Chen, Xudong Pan, Baojun Liu, Yuan Zhang, Haixin Duan and Min Yang. You Can’t Eat Your Cake and Have It Too: The Performance Degradation of LLMs with Jailbreak Defense, Proceedings of The ACM Web Conference (WWW), Sydney, Australia, May 2025.
Ruixuan Li, Chaoyi Lu, Baojun Liu, Yunyi Zhang, Geng Hong, Haixin Duan, Yanzhong Lin, Qingfeng Pan, Min Yang and Jun Shao. HADES Attack: Understanding and Evaluating Manipulation Risks of Email Blocklists, Proceedings of The 32nd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2025.
Mengying Wu, Geng Hong, Jinsong Chen, Qi Liu, Shujun Tang, Youhao Li, Baojun Liu, Haixin Duan and Min Yang. Revealing the Black Box of Device Search Engine: Scanning Assets, Strategies, and Ethical Consideration, Proceedings of The 32nd Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2025.
2024
Fenglu Zhang, Baojun Liu, Chaoyi Lu, Yunpeng Xing, Haixin Duan, Ying Liu and Liyuan Chang. Investigating Deployment Issues of DNS Root Server Instances From a China-Wide View, IEEE Transactions on Dependable and Secure Computing (TDSC), Volume 21, Issue 6, November 2024.
Yunpeng Xing, Chaoyi Lu, Baojun Liu, Haixin Duan, Junzhe Sun and Zhou Li. Yesterday Once More: Global Measurement of Internet Traffic Shadowing Behaviors, Proceedings of The ACM Internet Measurement Conference (IMC), Madrid, Spain, November 2024.
Ruixuan Li, Shaodong Xiao, Baojun Liu, Yanzhong Lin, Haixin Duan, Qingfeng Pan, Jianjun Chen, Jia Zhang, Ximeng Liu, Xiuqi Lu and Jun Shao. Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider, Proceedings of The ACM Internet Measurement Conference (IMC), Madrid, Spain, November 2024.
Mingxuan Liu, Zhenglong Jin, Jiahai Yang, Baojun Liu, Haixin Duan, Ying Liu, Ximeng Liu and Shujun Tang. ChatScam: Unveiling the Rising Impact of ChatGPT on Domain Name Abuse, Proceedings of The 54th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Brisbane, Australia, June 2024.
Mingxuan Liu, Yiming Zhang, Xiang Li, Chaoyi Lu, Baojun Liu, Haixin Duan and Xiaofeng Zheng. Understanding the Implementation and Security Implications of Protective DNS Services, Proceedings of The 31st Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2024.
Xiang Li, Wei Xu, Baojun Liu, Mingming Zhang, Zhou Li, Jia Zhang, Deliang Chang, Xiaofeng Zheng, Chuhan Wang, Jianjun Chen, Haixin Duan and Qi Li. TuDoor Attack: Systematically Exploring and Exploiting Logic Vulnerabilities in DNS Response Pre-processing with Malformed Packets, Proceedings of The 45th IEEE Symposium on Security and Privacy (IEEE S&P), San Francisco, California, May 2024.
Yijing Liu, Yiming Zhang, Baojun Liu, Haixin Duan, Qiang Li, Mingxuan Liu, Ruixuan Li and Jia Yao. Tickets or Privacy? Understand the Ecosystem of Chinese Ticket Grabbing Apps, Proceedings of The USENIX Security Symposium, Philadelphia, PA, USA, August 2024.
Yunyi Zhang, Baojun Liu, Haixin Duan, Min Zhang, Xiang Li, Fan Shi, Chengxi Xu and Eihal Alowaisheq. Rethinking the Security Threats of Stale DNS Glue Records, Proceedings of The USENIX Security Symposium, Philadelphia, PA, USA, August 2024.
Yunyi Zhang, Mingxuan Liu, Baojun Liu, Yiming Zhang, Haixin Duan, Min Zhang, Hui Jiang, Yanzhe Li and Fan Shi. Into the Dark: Unveiling Internal Site Search Abused for Black Hat SEO, Proceedings of The USENIX Security Symposium, Philadelphia, PA, USA, August 2024.
Yunyi Zhang, Mingming Zhang, Baojun Liu, Zhan Liu, Jia Zhang, Haixin Duan, Min Zhang, Fan Shi and Chengxi Xu. Cross the Zone: Toward a Covert Domain Hijacking via Shared DNS Infrastructure, Proceedings of The USENIX Security Symposium, Philadelphia, PA, USA, August 2024.
Ruixuan Li, Baojun Liu, Chaoyi Lu, Haixin Duan and Jun Shao. A Worldwide View on the Reachability of Encrypted DNS Services, Proceedings of The ACM Web Conference (WWW), Singapore, May 2024.
2023
Fenglu Zhang, Baojun Liu, Eihal Alowaisheq, Jianjun Chen, Chaoyi Lu, Linjian Song, Yong Ma, Ying Liu, Haixin Duan and Min Yang. Silence is not Golden: Disrupting the Load Balancing of Authoritative DNS Servers, Proceedings of The 30th ACM Conference on Computer and Communications Security (CCS), Copenhagen, Denmark, November 2023. (Distinguished Paper Award)
Wei Xu, Xiang Li, Chaoyi Lu, Baojun Liu, Jia Zhang, Jianjun Chen, Tao Wan and Haixin Duan. TsuKing: Coordinating DNS Resolvers and Queries into Potent DoS Amplifiers, Proceedings of The 30th ACM Conference on Computer and Communications Security (CCS), Copenhagen, Denmark, November 2023.
Zhenrui Zhang, Geng Hong, Xiang Li, Zhuoqun Fu, Jia Zhang, Mingxuan Liu, Chuhan Wang, Jianjun Chen, Baojun Liu, Haixin Duan, Chao Zhang and Min Yang. Under the Dark: A Systematical Study of Stealthy Mining Pools (Ab)use in the Wild, Proceedings of The 30th ACM Conference on Computer and Communications Security (CCS), Copenhagen, Denmark, November 2023.
Fenglu Zhang, Yunyi Zhang, Baojun Liu, Eihal Alowaisheq, Lingyun Ying, Xiang Li, Zaifeng Zhang, Ying Liu, Haixin Duan and Min Zhang. Wolf in Sheep’s Clothing: Evaluating the Security Risks of the Undelegated Record on DNS Hosting Services, Proceedings of The 2023 Internet Measurement Conference (IMC), Montréal, Canada, October 2023.
Xiang Li, Chaoyi Lu, Baojun Liu, Qifan Zhang, Zhou Li, Haixin Duan and Qi Li. The Maginot Line: Attacking the Boundary of DNS Caching Protection, Proceedings of The 32nd USENIX Security Symposium (USENIX Security), Anaheim, California, USA, August 2023.
Run Guo, Jianjun Chen, Yihang Wang, Keran Mu, Baojun Liu, Xiang Li, Chao Zhang, Haixin Duan and Jianping Wu. Temporal CDN-Convex Lens: A CDN-Assisted Practical Pulsing DDoS Attack, Proceedings of The 32nd USENIX Security Symposium (USENIX Security), Anaheim, California, USA, August 2023.
Mingming Zhang, Xiang Li, Baojun Liu, Jianyu Lu, Yiming Zhang, Jianjun Chen, Haixin Duan, Shuang Hao and Xiaofeng Zheng. Detecting and Measuring Security Risks of Hosting-Based Dangling Domains, Proceedings of The 2023 ACM SIGMETRICS (ACM SIGMETRICS), Orlando, Florida, USA, June 2023.
Xiang Li, Baojun Liu, Xuesong Bai, Mingming Zhang, Qifan Zhang, Zhou Li, Haixin Duan and Qi Li. Ghost Domain Reloaded: Vulnerable Links in the Domain Name Delegation and Revocation, Proceedings of The 30th Annual Network and Distributed System Security Symposium (NDSS), San Diego, California, USA, February 2023.
2022
Mingxuan Liu, Yiming Zhang, Baojun Liu and Haixin Duan. Exploring the Characteristics and Security Risks of Emerging Emoji Domain Names, Proceedings of The 27th European Symposium on Research in Computer Security (ESORICS), Copenhagen, Denmark, September 2022.
Huikai Xu, Miao Yu, Yanhao Wang, Yue Liu, Qinsheng Hou, Zhenbang Ma, Haixin Duan, Jianwei Zhuge and Baojun Liu. Trampoline Over the Air: Breaking in IoT Devices Through MQTT Brokers, Proceedings of The 7th IEEE European Symposium on Security and Privacy (EuroS&P), Genoa, Italy, June 2022.
Fenglu Zhang, Chaoyi Lu, Baojun Liu, Haixin Duan and Ying Liu. Measuring the Practical Effect of DNS Root Server Instances: A China-Wide Case Study, Proceedings of Passive and Active Measurement Conference (PAM), Virtual event, March 2022.
Qinge Xie, Shujun Tang, Xiaofeng Zheng, Qingran Lin, Baojun Liu, Haixin Duan and Frank Li. Building an Open, Robust, and Stable Voting-Based Internet Domain Top List, Proceedings of The 31st USENIX Security Symposium (USENIX Security), Boston, MA, USA, August 2022.
Chuhan Wang, Kaiwen Shen, Minglei Guo, Yuxuan Zhao, Mingming Zhang, Jianjun Chen, Baojun Liu, Xiaofeng Zheng, Haixin Duan, Yanzhong Lin and Qingfeng Pan. A Large-scale and Longitudinal Measurement Study of DKIM Deployment, Proceedings of The 31st USENIX Security Symposium (USENIX Security), Boston, MA, USA, August 2022.
Xuewei Feng, Qi Li, Kun Sun, Ke Xu, Baojun Liu, Xiaofeng Zheng, Qiushi Yang, Haixin Duan and Zhiyun Qian. PMTUD is not Panacea: Revisiting IP Fragmentation Attacks against TCP, Proceedings of The 29th Annual Network and Distributed System Security Symposium (NDSS), San Diego, California, USA, April 2022.
2021
Yiming Zhang, Baojun Liu, Chaoyi Lu, Zhou Li, Haixin Duan, Jiachen Li and Zaifeng Zhang. Rusted Anchors: A National Client-Side View of Hidden Root CAs in the Web PKI Ecosystem, Proceedings of The 28th ACM Conference on Computer and Communications Security (CCS), Seoul, South Korea, November 2021.
Xiang Li, Baojun Liu, Xiaofeng Zheng, Haixin Duan, Qi Li and Youjun Huang. Fast IPv6 Network Periphery Discovery and Security Implications, Proceedings of The 51st IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Virtual, June 2021.
Chaoyi Lu, Baojun Liu, Yiming Zhang, Zhou Li, Fenglu Zhang, Haixin Duan, Ying Liu, Joann Chen, Jinjin Liang, Zaifeng Zhang, Shuang Hao and Min Yang. From WHOIS to WHOWAS: A Large-Scale Measurement Study of Domain Registration Privacy under the GDPR, Proceedings of The 28th Annual Network and Distributed System Security Symposium (NDSS), Virtual, February 2021.
Kaiwen Shen, Chuhan Wang, Xiaofeng Zheng, Minglei Guo, Chaoyi Lu, Baojun Liu, Yuxuan Zhao, Shuang Hao, Haixin Duan, Qingfeng Pan and Min Yang. Weak Links in Authentication Chains: A Large-scale Analysis of Email Sender Spoofing Attacks, Proceedings of The 30th USENIX Security Symposium (USENIX Security), Vancouver, BC, Canada, August 2021.
Mingxuan Liu, Yiming Zhang, Baojun Liu, Zhou Li, Haixin Duan and Donghong Sun. Detecting and Characterizing SMS Spearphishing Attacks, Proceedings of The 37th Annual Computer Security Applications Conference (ACSAC), Virtual Event, USA, December 2021.
Deliang Chang, Shanshan Hao, Zhou Li, Baojun Liu and Xing Li. DNSWeight: Quantifying Country-Wise Importance of Domain Name System, IEEE Access, Volume 9, March 2021.
2020
Mingming Zhang, Xiaofeng Zheng, Kaiwen Shen, Ziqiao Kong, Chaoyi Lu, Yu Wang, Haixin Duan, Shuang Hao, Baojun Liu and Min Yang. Talking with Familiar Strangers: An Empirical Study on HTTPS Context Confusion Attacks, Proceedings of The 27th ACM Conference on Computer and Communications Security (CCS), Orlando, USA, November 2020.
Yiming Zhang, Baojun Liu, Chaoyi Lu, Zhou Li, Haixin Duan, Shuang Hao, Mingxuan Liu, Ying Liu, Dong Wang and Qiang Li. Lies in the Air: Characterizing Fake-base-station Spam Ecosystem in China, Proceedings of The 27th ACM Conference on Computer and Communications Security (CCS), Orlando, USA, November 2020.
Xiaofeng Zheng, Chaoyi Lu, Jian Peng, Qiushi Yang, Dongjie Zhou, Baojun Liu, Keyu Man, Shuang Hao, Haixin Duan and Zhiyun Qian. Poison over Troubled Forwarders: A Cache Poisoning Attack Targeting DNS Forwarding Devices, Proceedings of The 29th USENIX Security Symposium (USENIX Security), Boston, MA, USA, August 2020.
Weizhong Li, Kaiwen Shen, Run Guo, Baojun Liu, Jia Zhang, Haixin Duan, Shuang Hao, Xiarun Chen and Yao Wang. CDN Backfired: Amplification Attacks Based on HTTP Range Requests, Proceedings of The 50th IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Valencia, Spain, June 2020.
Run Guo, Weizhong Li, Baojun Liu, Shuang Hao, Jia Zhang, Haixin Duan, Kaiwen Shen, Jianjun Chen and Ying Liu. IP Fragmentation Attacks against DNS, Proceedings of The 27th Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2020.
2019
Chaoyi Lu, Baojun Liu, Zhou Li, Shuang Hao, Haixin Duan, Mingming Zhang, Chunying Leng, Ying Liu, Zaifeng Zhang and Jianping Wu. An End-to-End, Large-Scale Measurement of DNS-over-Encryption: How Far Have We Come? Proceedings of The 2019 Internet Measurement Conference (IMC), Amsterdam, Netherlands, October 2019.
Kun Du, Hao Yang, Zhou Li, Haixin Duan, Shuang Hao, Baojun Liu, Yuxiao Ye, Mingxuan Liu, Xiaodong Su, Guang Liu, Zhifeng Geng, Zaifeng Zhang and Jinjin Liang. TL;DR Hazard: A Comprehensive Study of Levelsquatting Scams, Proceedings of The 15th International Conference on Security and Privacy On Communication Networks (SecureComm), Orlando, USA, October 2019.
Baojun Liu, Zhou Li, Peiyuan Zong, Chaoyi Lu, Haixin Duan, Ying Liu, Sumayah Alrwais, XiaoFeng Wang, Shuang Hao, Yaoqi Jia, Yiming Zhang, Kai Chen and Zaifeng Zhang. TraffickStop: Detecting and Measuring Illicit Traffic Monetization Through Large-scale DNS Analysis, Proceedings of The 4th IEEE European Symposium on Security and Privacy (IEEE EuroS&P), Stockholm, Sweden, June 2019.
Eihal Alowaisheq, Peng Wang, Sumayah Alrwais, Xiaojing Liao, XiaoFeng Wang, Tasneem Alowaisheq, Xianghang Mi, Siyuan Tang and Baojun Liu. Cracking the Wall of Confinement: Understanding and Analyzing Malicious Domain Takedowns, Proceedings of The 26th ISOC Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA, February 2019.
Xianghang Mi, Xuan Feng, Xiaojing Liao, Baojun Liu, Xiaofeng Wang, Feng Qian, Zhou Li, Sumayah Alrwais, Limin Sun and Ying Liu. Resident Evil: Understanding Residential IP Proxy as a Dark Service, Proceedings of The 40th IEEE Symposium on Security and Privacy (IEEE S&P), San Francisco, USA, May 2019.
2018
Run Guo, Jianjun Chen, Baojun Liu, Jia Zhang, Chao Zhang, Haixin Duan, Tao Wan, Jian Jiang, Shuang Hao and Yaoqi Jia. Abusing CDNs for Fun and Profit: Security Issues in CDNs’ Origin Validation, Proceedings of The 37th IEEE International Symposium on Reliable Distributed Systems (SRDS), Bahia, Brazil, October 2018.
Mingming Zhang, Baojun Liu, Chaoyi Lu, Jia Zhang, Shuang Hao and Haixin Duan. Measuring Privacy Threats in China-Wide Mobile Networks, Proceedings of The 8th USENIX Workshop on Free and Open Communications on the Internet (FOCI), Baltimore, USA, August 2018.
Baojun Liu, Chaoyi Lu, Haixin Duan, Ying Liu, Zhou Li, Shuang Hao and Min Yang. Who Is Answering My Queries: Understanding and Characterizing Interception of the DNS Resolution Path, Proceedings of The 27th USENIX Security Symposium (USENIX Security), Baltimore, USA, August 2018.
Baojun Liu, Chaoyi Lu, Zhou Li, Ying Liu, Haixin Duan, Shuang Hao and Zaifeng Zhang. A Reexamination of Internationalized Domain Names: the Good, the Bad and the Ugly, Proceedings of The 48th IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Luxembourg City, Luxembourg, June 2018.
2017
- Daiping Liu, Zhou Li, Kun Du, Haining Wang, Baojun Liu and Haixin Duan. Don’t Let One Rotten Apple Spoil the Whole Barrel: Towards Automated Detection of Shadowed Domains, Proceedings of The 24th ACM Conference on Computer and Communications Security (CCS), Dallas, TX, October 2017.
Teaching
- “Internet Architecture and Security Fundamentals”, Fall 2025 (Co-instructor)
- “Network Security Attack and Defense Practices”, Summer 2025 (Co-instructor)
- “Computer Network Security Technology”, Spring 2025 (Lead instructor)
- “Internet Architecture and Security Fundamentals”, Fall 2024 (Co-instructor)
- “Network Security Attack and Defense Practices”, Summer 2024 (Co-instructor)
- “Internet Architecture and Security Fundamentals”, Fall 2023 (Co-instructor)
- “Network Security Attack and Defense Practices”, Summer 2023 (Co-instructor)
- “Next Generation Internet”, Fall 2022 (Guest lecturer)
- “Network Measurement”, Fall 2021 (Guest lecturer)
- “Network Measurement”, Fall 2020 (Guest lecturer)
- “Next Generation Internet”, Fall 2020 (Guest lecturer)
- “Network Measurement”, Fall 2019 (Guest lecturer)
- “Computer Network Security Technology”, Fall 2019 (Guest lecturer)
- “Next Generation Internet”, Fall 2019 (Guest lecturer)
Professional Service
- Deputy Secretary-General, CCF Technical Committee on Network and System Security
- Member, ICANN Root Server System Advisory Committee (RSSAC)
- Member, Expert Committee of the Asi@Connect Project
Awards and Honors
- 2026, NDSS Distinguished Paper Award (DNS Bailiwick)
- 2026, NDSS Distinguished Paper Award (Email Aliases)
- 2025, Advanced Worker, Zhongguancun Laboratory
- 2025, USENIX Security Honorable Mention
- 2024, Advanced Worker, Tsinghua University
- 2024, Advanced Worker, Zhongguancun Laboratory
- 2024, Advanced Worker, Institute for Network Sciences and Cyberspace, Tsinghua University
- 2023, Advanced Worker, Institute for Network Sciences and Cyberspace, Tsinghua University
- 2023, Top Young Scholar of National “Ten Thousand Talent Program”
- 2023, Internet Fundamental Technology Achievement Award
- 2023, ACM CCS Distinguished Paper Award
- 2022, ACM SIGSAC China Rising Star
- 2022, Nominee of Excellence Tsinghua Postdoctoral Researcher
- 2020, ShuiMu Tsinghua Scholar
- 2020, IRTF Applied Networking Research Prize (ANRP)
- 2020, IEEE/IFIP DSN Best Paper Award
- 2019, NDSS Distinguished Paper Award
- 2019, IMC Nominee of Best Paper Award and Community Contribution Award
