The Computer and Communication Security Laboratory (CCS Lab) was established in 2004 at the Department of Computer Science and Engineering, Korea University. Today, CCS Lab is dedicated to advancing research in software security, secure system design, and network security. Our mission is to address emerging security challenges and develop effective countermeasures to safeguard our digital world.
2025 Teacher's Day CCS 20 years Anniversary 2026 Teacher's Day

News

2026/06/23 Choongin's collaborative research paper, Q3Fuzz (DSN 2026) received the Best Paper Award
Choongin’s collaborative research paper with CUNY received the Best Paper Award at The 56th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), June 23, 2026. Congratulations!

2025/11/05 Prof. Lee presented "Securing Open Source with SBOM: From Visibility to Trust" at Open Source Summit Korea 2025
Prof. Lee presented "Securing Open Source with SBOM: From Visibility to Trust" at the Open Source Summit Korea 2025, highlighting automated SBOM generation, vulnerability verification, and collaborative initiatives for open source security.

2024/07/10 Prof. Lee delivered a talk as a panelist in OECD Global Forum on Digital Security for Prosperity
Prof. Lee delivered a talk as a panelist in order to discuss open source security and security-by-design, along with renowned policy/technical experts.

2024/07/08 Dr. Nkuba Carlos Uncovered 28 Denial of Service (DoS) Vulnerabilities in Z-Wave IoT Smart Home Devices with New Research
Groundbreaking research by Dr. Nkuba Carlos and Jimin Kang uncovered 28 vulnerabilities in Z-Wave IoT smart home devices, leading to security advisories and CVE assignments.
2024/05/18 CCSLAB 20th Anniversary Event
2022/04/22 CCSLAB got the excellence award for the IITP R&D project exchange meeting
CCSLAB got the excellence award for the IITP R&D project exchange meeting with the "Development of Automated Vulnerability Discovery Technologies for Blockchain Platform Security" project.

More News...

Registered CVEs

68 2026/07/15 CVE-2026-38974 Yeonghyeon Choi, Duyeong Kim
67 2026/07/10 CVE-2026-57575 Yeonghyeon Choi, Duyeong Kim
66 2026/07/06 CVE-2026-38979 Yeonghyeon Choi, Duyeong Kim
65 2026/07/06 CVE-2026-38976 Yeonghyeon Choi, Duyeong Kim
64 2026/07/06 CVE-2026-38973 Yeonghyeon Choi, Duyeong Kim
63 2026/07/02 CVE-2026-50722 Yeonghyeon Choi, Duyeong Kim
62 2026/07/02 CVE-2026-50721 Yeonghyeon Choi, Duyeong Kim
57 2026/07/01 CVE-2026-36912 Yoonjong Na, Wonhong Jeong
56 2026/07/01 CVE-2026-36911 Yoonjong Na, Wonhong Jeong

More CVEs...

Publication

2026/06/23
Best Paper
Award
Q3Fuzz: Multi-Layered Stateful Fuzzing for the QUIC-HTTP/3 Protocol Stack, IEEE/IFIP Int'l Conf. on Dependable Systems and Networks (DSN) Isa Jafarov
2026/06/09
Paper
Clovery: Identifying Affected Versions in C/C++ Public Security Vulnerability Reports, IFIP Int'l Conf. on ICT Systems Security and Privacy Protection (IFIP SEC) Duyeong Kim
2025/11/16
Paper
IMUFUZZER: Resilience-based Discovery of Signal Injection Attacks on Robotic Vehicles, IEEE/ACM Int'l Conf. on Automated Software Engineering (ASE) Sudharssan Mohan
2025/08/27
Paper
Scaling SCIERA: A Journey Through the Deployment of a Next-generation Network, Int'l Conf. on ACM SIGCOMM Wirz, Gartner, Bommel
2025/06/23
Paper
ZCOVER: Uncovering Z-Wave Controller Vulnerabilities Through Systematic Security Analysis of Application Layer Implementation, IEEE/IFIP Int'l Conf. on Dependable Systems and Networks (DSN) Carlos Nkuba Kayembe
2025/01/01
Paper
A large-scale analysis of the effectiveness of publicly reported security patches, Computers & Security Seunghoon Woo
2024/09/16
Paper
PRETT2: Discovering HTTP/2 DoS Vulnerabilities via Protocol Reverse Engineering, European Symposium on Research in Computer Security (ESORICS) Choongin Lee
2024/09/16
Paper
BLOOMFUZZ : Unveiling Bluetooth L2CAP Vulnerabilities via State Cluster Fuzzing with Target-Oriented State Machines, European Symposium on Research in Computer Security (ESORICS) Pyeongju Ahn
2024/04/19
Paper
CNEPS: A Precise Approach for Examining Dependencies among Third-Party C/C++ Open-Source Components, IEEE/ACM Int'l Conf. on Software Engineering (ICSE) Yoonjong Na
2023/08/09
Paper
V1SCAN: Discovering 1-day Vulnerabilities in Reused C/C++ Open-source Software Components Using Code Classification Techniques, USENIX Security Symposium Seunghoon Woo
2022/09/06
Paper
CIRCUIT: A JavaScript Memory Heap-Based Approach for Precisely Detecting Cryptojacking Websites, IEEE Access Hyunji Hong
2022/08/10
Paper
MOVERY: A Precise Approach for Modified Vulnerable Code Clone Discovery from Modified Open-Source Software Components, USENIX Security Symposium Seunghoon Woo

More Publication...