kun sunDr. Kun Sun, Associate Professor
Sun Security Laboratory (SunLab)
Center for Systems Information Security (CSIS)
Department of Information Sciences and Technology (IST)
George Mason University

E-Mail:  ksun3@gmu.edu
Phone:  (703) 993-1715
Fax:    (703) 993-4776
Address: Research Hall, Suite 417
George Mason University
4400 University Drive
Fairfax, VA 22030-4422
~~~~~~~~~~~~~~~~~~~~~~

 

Dr. Kun Sun is an associate professor in George Mason University. He received his Ph.D. in Computer Science from North Carolina State University. His research focuses on systems and network security. Dr. Sun has more than 10 years working experience in both industry and academia, and serves as the director of the Sun Security Laboratory (SunLab), which is continuously hiring self-motivated undergraduate and graduate students who have research interests on information security, operating system, and computer networks. Send me your CV.


What's New?
  • We are hiring Master students to work on one Virtual Machine Introspection (VMI) project, if you have related background, please contact me.
  • [DIMVA17] One conference paper on container security titled "SPEAKER: Split-Phase Execution of Application Containers" is being conditionally accepted by DIMVA 2017. Congratulations to Lingguang Lei and Jianhua Sun.
  • I was invited to serve in the TPC of INFOCOM 2018.
  • [DSN17] One conference paper titled "JGRE: An Analysis of JNI Global Reference Exhaustion Vulnerabilities in Android" being accepted by DSN 2017.
  • I was invited to serve in the TPC of SecureComm 2017.
  • I was invited to serve in the TPC of CCS 2017.
  • I was invited to serve in the TPC of CNS 2017.
  • I was invited to serve in the TPC of DSN 2017.
  • [ICDCS16] One conference paper titled "Amnesia: A Bilateral Generative Password Manager" being accepted by ICDCS 2016. This work was majorly done by an undergraudate student, Luren Wang, who was mentored by a PhD student, Yue Li. Congratulations to Luren Wang and Yue Li.
  • [S&P16] One conference paper titled "CaSE: Cache-Assisted Secure Execution on ARM Processors" being accepted by IEEE S&P 2016. Congratulations to Ning Zhang.
Research Interests
  • Moving Target Defense: Against the experts in defense, the enemy does not know where to attack.  -- SunTzu
  • System security: trustworthy computing environments
  • Mobile security: resource isolation and access control
  • Password Security: password measurement and enforcement
Current Students

Postdoctoral

  • Lingguang Lei, Postdoctoral

Ph.D. students

  • Yue Li (Co-advised with Prof. Haining Wang)
  • Jianhua Sun
  • Kyle Wallace (Co-advised with Prof. Gang Zhou)
  • Shengye Wan

Visiting Scholars

  • Chong Guan (CAS IIE)
  • Yi He (Tsinghua University)
  • Jing Zheng (Tsinghua University)
Teaching
  • CYSE 411 Secure Software Engineering (Spring 2017)
  • CSCI 454/554 Computer and Network Security (Spring 2015) (Spring 2016)
  • CSCI 680 Advanced System and Network Security (Fall 2015)
  • CSCI 780 Advanced Network Security (Fall 2014)
Professional Services
  • TPC Member: DAC 2017, DSN 2017, INFOCOM 2016/2017, SecureComm 2016/2017, CCS 2015/2016/2017, CNS 2014/2016/2017, ICCCN 2015/2016, ICC 2015/2016/2017, MTD 2015/2016.
  • TPC Co-Chair: First ACM Workshop on Moving Target Defense (MTD 2014), in conjunction with ACM CCS 2014.
  • Journal Editorial Board Member: International Journal of Security and Networks (IJSN).
Recent Publications (Selected Publications)
  • [DIMVA17] Lingguang Lei, Jianhua Sun, Kun Sun, Chris Shenefiel, Rui Ma, Yuewu Wang, and Qi Li,. "SPEAKER: Split-Phase Execution of Application Containers. " To appear in the 14th Conference on Detection of Intrusions and Malware & Vulnerability Assessment (DIMVA '17), Bonn, Germany, July 6-7. 2017. (Acceptance ratio: 26.86%=18/67)
  • [DSN17] Yacong Gu, Kun Sun, Purui Su, Qi Li, Yemian Lu, Lingyun Ying, and Denguo Feng. "JGRE: An Analysis of JNI Global Reference Exhaustion Vulnerabilities in Android ." To appear in the 47th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Denver, CO, June 26-29, 2017. (Acceptance ratio: 22.27%=49/220)
  • [ICDCS16] Luren Wang, Yue Li, and Kun Sun. "Amnesia: A Bilateral Generative Password Manager." To appear in the 36th IEEE International Conference on Distributed Computing Systems (ICDCS), Nara, Japan, June 27-30, 2016. (Acceptance ratio: 17.62%=68/386)
  • [S&P16] Ning Zhang, Kun Sun, Wenjing Lou, and Tom Hou. "CaSE: Cache-Assisted Secure Execution on ARM Processors." To appear in the 37th IEEE Symposium on Security and Privacy (S&P), SAN JOSE, CA, MAY 23-25, 2016. (Acceptance ratio: 13.75%=55/400)
  • [AsiaCCS16] Chong Guan, Kun Sun, Zhan Wang and Wentao Zhu. "Privacy Breach by Exploiting postMessage in HTML5: Identification, Evaluation, and Countermeasure." To appear in the 11th ACM Symposium on Information, Compute rand Communications Security (ASIACCS), Xi'an, China, May 30 - June 3, 2016. (Acceptance ratio: 20.9%=73/350 (full paper))
  • [Infocom16] Yue Li, Haining Wang, and Kun Sun. "A Study of Personal Information in Human-chosen Passwords and Its Security Implications." To appear in IEEE International Conference on Computer Communications (INFOCOM), San Francisco, CA, April 10-15, 2016. (Acceptance ratio: 18.25%=300/1,644)
  • [Infocom16] Jianhua Sun and Kun Sun. "DESIR: Decoy-Enhanced Seamless IP Randomization." To appear in IEEE International Conference on Computer Communications (INFOCOM), San Francisco, CA, April 10-15, 2016. (Acceptance ratio: 18.25%=300/1,644)
  • [EuroS&P16] Ning Zhang, He Sun, Kun Sun, Wenjing Lou, and Thomas Hou. "CacheKit: Evading Memory Introspection Using Cache Incoherence". To appear in the 1st IEEE European Symposium on Security and Privacy (EuroS&P), Saarbrucken, GERMANY, on March 21-24, 2016. (Acceptance ratio: 17.26%=29/168)
  • [TIFS] He Sun, Kun Sun, Yuewu Wang, and Jiwu Jing. "Reliable and Trustworthy Memory Acquisition on Smartphones". In Information Forensics and Security, IEEE Transactions on (TIFS), vol.10, no.12, pp.2547-2561, Dec. 2015.
  • [GameSec15] Andrew Clark, Kun Sun, Linda Bushnell, and Radha Poovendran. "A Game-Theoretic Approach to IP Address Randomization in Decoy-Based Cyber Defense". To appear in the Sixth Conference on Decision and Game Theory for Security (GameSec), London, UK, on November 4-5, 2015.
  • [CCS15] He Sun, Kun Sun, Yuewu Wang, and Jiwu Jing. "TrustOTP: Transforming Smartphones into Secure One-Time Password Tokens". To appear in the 22nd ACM Conference on Computer and Communications Security (CCS), Denver, Colorado, October 12-16, 2015. (Acceptance ratio: 19.81%=128/646)
  • [SRDS15] Xing Gao, Dachuan Liu, Haining Wang, and Kun Sun. "PmDroid: Permission Supervision for Android Advertising". To appear in the 34th Symposium on Reliable Distributed Systems (SRDS), Montreal, Canada, September 28 - October 01, 2015. (Acceptance ratio: 29.63%=24/81 (regular papers))
  • [DSN15] He Sun, Kun Sun, Yuewu Wang, Jiwu Jing, and Haining Wang. "TrustICE: Hardware-assisted Isolated Computing Environments on Mobile Devices". To appear in the 45th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Rio de Janeiro, Brazil, June 22-25, 2015. (Acceptance ratio: 21.83%=50/229)
  • [S&P15] Fengwei Zhang, Kevin Leach, Angelos Stavrou, Haining Wang, and Kun Sun. "Using Hardware Features for Increased Debugging Transparency". To appear in the 36th IEEE Symposium on Security and Privacy (S&P), Fairmont, San Jose, CA, May 18-20, 2015. (Acceptance ratio:13.51%=55/407)
  • [AsiaCCS15] Ning Zhang, Kun Sun, Wenjing Lou, Y. Thomas Hou, and Sushil Jajodia. "Now You See Me: Hide and Seek in Physical Address Space". To appear in the 10th ACM Symposium on Information, Computer and Communications Security (ASIACCS), Singapore, April 14-17, 2015. (Acceptance ratio: 17.84%=48/269 (full paper))
  • [NDSS15] Xueqiang Wang, Kun Sun, Yuewu Wang, and Jiwu Jing. "DeepDroid: Dynamically Enforcing Enterprise Policy on Android Devices", In the Proceedings of 2015 Network and Distributed System Security Symposium (NDSS), San Diego, CA, February 8-11, 2015. (Acceptance ratio: 16.88%=51/302)