Fan Sang


Ph.D. student in Computer Science
School of Cybersecurity and Privacy
Georgia Institute of Technology

Email: fsang AT gatech DOT edu
[Google Scholar] [CV] [Github]

About Me

I am currently a 5th year Ph.D. student at Georgia Tech, working with Prof. Taesoo Kim at Systems Software & Security Lab. I am the author of SGX101, an Intel SGX tutorial website with programming examples and reference resources. Before coming to GaTech, I graduated from University of Southern California (USC) with a Bachelor's degree in Computer Science in 2018.

I am interested in different areas of security & privacy, including Trusted Computing, Edge and IoT Security, System Security, and Reverse Engineering. I have interned at Cisco Research and ByteDance Research.

Currently I am exploring VR/AR/XR Security.

News

  • (04/2022)[Paper] Our paper, "PRIDWEN: Universally Hardening SGX Programs via Load-Time Synthesis", has been accepted to appear in USENIX ATC 2022!
  • (04/2021)[Paper] Our paper, "Hardware Support to Improve Fuzzing Performance and Precision", has been accepted to appear in ACM CCS 2021! Congrats to Ren!

Grants and Funding

  • Cisco Research Funding ($154k)2022
    Delivered proposal on defeating next-generation cyber threats in the edge environment.
    Resulted in $154k research funding from Cisco.

Publications

  1. PRIDWEN: Universally Hardening SGX Programs via Load-Time Synthesis [pdf][slides][code]
    Fan Sang, Ming-Wei Shih, Sangho Lee, Xiaokuan Zhang, Michael Steiner, Mona Vij, and Taesoo Kim
    ATC'22: In Proceedings of the 2022 USENIX Annual Technical Conference
    Carlsbad, CA, USA, July 2022 (Acceptance rate: 64/393=16.3%)

  2. Edge Security: Challenges and Issues [pdf]
    Xin Jin, Charalampos Katsis, Fan Sang, Jiahao Sun, Ashish Kundu, and Ramana Kompella
    arXiv:2206.07164v1 [cs.CR]
    July 2022

  3. Hardware Support to Improve Fuzzing Performance and Precision [pdf][slides][code]
    Ren Ding, Yonghae Kim, Fan Sang, Wen Xu, Gururaj Saileshwar, and Taesoo Kim
    CCS'21: In Proceedings of the 28th ACM Conference on Computer and Communications Security
    Seoul, South Korea, Nov 2021 (Acceptance rate: 65/315=20.6%)

  4. P2FaaS: Toward Privacy-Preserving Fuzzing as a Service [pdf]
    Fan Sang, , Daehee Jang, Ming-Wei Shih, and Taesoo Kim
    arXiv:1909.11164 [cs.CR]
    Sep 2019

Professional Services

Reviewer
  • IEEE Transactions on Dependable and Secure Computing (TDSC) 2022
External Reviewer
  • IEEE Symposium on Security and Privacy (Oakland) 2019, 2022
  • ACM Conference on Computer and Communications Security (CCS) 2019
  • ISOC Network and Distributed System Security Symposium (NDSS) 2020
  • ACM Symposium on Operating Systems Principles (SOSP) 2021
  • Usenix Annual Technical Conference (ATC) 2019
  • Usenix Symposium on Networked Systems Design and Implementation (NDSI) 2020

Work Experience

  • Security Research Internship at Cisco Research (Mentor: Dr. Ashish Kundu) May 2022 - Aug 2022
  • Security Research Internship at ByteDance (Mentor: Dr. Yu Ding) May 2020 - Aug 2020
  • Security Research Internship at Baidu X-Lab (Mentor: Dr. Tao Wei) Jun 2017 - Aug 2017

Teaching Experience

Misc.

In my spare time, I like to take photos and play guitar. During weekends, I watch F1 races if there is one, or cook food with complex recipes if there is no F1 race. I also enjoy working out in the gym and playing tennis. I live with my munchkin cat (a.k.a. corgi in cats) Soy and she is absolutely adorable.