基本信息

李志      博导 中国科学院信息工程研究所

电子邮件: lizhi@iie.ac.cn

通信地址: 北京市海淀区树村路9号

邮政编码:

研究领域

① 智能化网络攻防:大模型赋能渗透测试、网络空间测绘、二进制理解;

② 工业互联网安全:面向重要工控系统、物联网设备、具生智能设备、无人设备,研究固件漏洞挖掘、协议安全分析、安全评估等关键技术;

招生信息

   
招生专业
083900-网络空间安全
招生方向
工控与物联网安全
智能化网络攻防
网络空间主动测绘

工作经历

2023-11~至今, 中国科学院信息工程研究所, 正高级工程师(正研级)

2017-11~2023-10, 中国科学院信息工程研究所, 高级工程师

2013-07~2017-10,中国科学院信息工程研究所, 助理研究员

发表论文

  1. EMFuzz: Use Electromagnetic Fuzzing for Automated Attack Surface Assessment of Actuators, IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2025
  2. Battling against Protocol Fuzzing: Protecting Networked Embedded Devices from Dynamic Fuzzers, TOSEM, 2024,
  3. Concrete Constraint Guided Symbolic Execution, International Conference on Software Engineering (ICSE) , 2024
  4. LibvDiff: Library Version Difference Guided OSS Version Identification in Binaries, International Conference on Software Engineering (ICSE) , 2024
  5. Asteria-Pro: Enhancing Deep-Learning Based Binary Code Similarity Detection by Incorporating Domain Knowledge (TOSEM), ACM Transactions on Software Engineering and Methodology, 2024
  6. NFCEraser: A Security Threat of NFC Message Modification Caused by Quartz Crystal, 2024 IEEE Symposium on Security and Privacy, 2024
  7. Enhancing Function Name Prediction using Votes-Based Name Tokenization and Multi-task Learning (FSE/ESEC), Proceedings of the ACM on Software Engineering, 2024
  8. NFCEraser: A Security Threat of NFC Message Modification Caused by Quartz Crystal Oscillator, 45TH IEEE SYMPOSIUM ON SECURITY AND PRIVACY, SP 2024, 2024
  9. Asteria-Pro: Enhancing Deep Learning-based Binary Code Similarity Detection by Incorporating Domain Knowledge, ACM TRANSACTIONS ON SOFTWARE ENGINEERING AND METHODOLOGY, 2024
  10. Internet-Scale Fingerprinting the Reusing and Rebranding IoT Devices in the Cyberspace, IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023,
  11. Spenny: Extensive ICS Protocol Reverse Analysis via Field Guided Symbolic Execution, IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING , 2023
  12. Characterizing Heterogeneous Internet of Things Devices at Internet Scale Using Semantic Extraction, IEEE INTERNET OF THINGS JOURNAL, 2021,
  13. Understanding Security Risks of Embedded Devices through Fine-grained Firmware Fingerprinting, IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2021

科研活动

   
科研项目
( 1 ) 网络评测大模型系统, 负责人, 中国科学院计划, 2026-02--2028-01
( 2 ) 探测数据分析关键技术研究, 负责人, 国家任务, 2024-09--2026-08
( 3 ) 硬件电路安全, 负责人, 其他国际合作项目, 2022-12--2023-12
( 4 ) 工业数据安全, 负责人, 国家任务, 2022-12--2025-06
( 5 ) 工控系统网络安全分析, 负责人, 其他, 2022-11--2024-10
( 6 ) 复杂供应链下大规模视频监控网络安全监测, 负责人, 国家任务, 2022-10--2025-09
( 7 ) 物联网设备识别关键技术研究, 负责人, 国家任务, 2019-02--2022-01
( 8 ) 大规模物联网设备在线漏洞扫描, 负责人, 国家任务, 2018-01--2020-12
( 9 ) 网络设备高效探测与精准识别, 负责人, 国家任务, 2016-12--2019-11