Fan Sang, Ph.D.


Ph.D. in Computer Science
School of Cybersecurity and Privacy
Georgia Institute of Technology

Email: fsang AT gatech DOT edu
[Google Scholar] [CV] [Github]

About Me

I graduated from Georgia Institute of Technology with a Ph.D. in Computer Science in 2024, advised by Prof. Taesoo Kim at SSLab. I am the author of SGX101, an Intel SGX tutorial website with programming examples and reference resources. Before coming to Georgia Tech, I graduated from University of Southern California (USC) with a Bachelor's degree in Computer Science in 2018.

I am interested in different areas of security & privacy, including confidential computing, blockchain security, edge/IoT Security, and system security. I have interned at Cisco Research and ByteDance Research.

News

  • (1/2025)[Service] I am invited to serve on the program committee of the 2025 EAI International Conference on Security and Privacy in Communication Networks (SecureComm).
  • (11/2024)[Paper] Our paper, "RUG: Turbo LLM for Rust Unit Test Generation)", has been accepted to appear in IEEE/ACM ICSE 2025! Congrats to Xiang!
  • (9/2024)[Paper] Our paper, "Portal: Fast and Secure Device Access with Arm CCA for Modern Arm Mobile System-on-Chips (SoCs)", has been accepted to appear in IEEE SP 2025!
  • (9/2024)[Service] I am invited to serve on the program committee of NYU’s CSAW’24 Cyber Security Applied Research Paper Competition.
  • (8/2024)[Paper] Our paper, "Rakis: Secure Fast I/O Primitives Across Trust Boundaries on Intel SGX", has been accepted to appear in ACM EuroSys 2025! Congrats to Mansour!
  • (7/22/2024)[News] I have successfully defended my dissertation! Thanks everyone for all the help on this six-year adventure!
  • (11/2023)[Service] I am invited to serve on the program committee of the 2024 EAI International Conference on Security and Privacy in Communication Networks (SecureComm).
  • (10/2023)[Paper] Our paper, "Sense: Enhancing Microarchitectural Awareness for TEEs via Subscription-Based Notification", has been accepted to appear in NDSS 2024!
  • (9/2023)[Service] I am invited to serve on the program committee of NYU’s CSAW’23 Cyber Security Applied Research Paper Competition.
  • (10/2022)[Patent] Our patent, "Access point and communication connection method therefor" (US20220345890A1), has been published!
  • (04/2022)[Paper] Our paper, "Pridwen: Universally Hardening SGX Programs via Load-Time Synthesis", has been accepted to appear in USENIX ATC 2022!
  • (04/2021)[Paper] Our paper, "Hardware Support to Improve Fuzzing Performance and Precision", has been accepted to appear in ACM CCS 2021! Congrats to Ren!

Publications and Preprints

  1. RUG: Turbo LLM for Rust Unit Test Generation [pdf]
    Xiang Chen, Fan Sang, Yizhuo Zhai, Xiaokuan Zhang, and Taesoo Kim
    ICSE'25 (To appear): In Proceedings of the 47th International Conference on Software Engineering
    Ottawa, Canada, April 2025 (Acceptance rate: 112/523=21.4%)

  2. Portal: Fast and Secure Device Access with Arm CCA for Modern Arm Mobile System-on-Chips (SoCs) [pdf]
    Fan Sang, Jaehyuk Lee, Xiaokuan Zhang, and Taesoo Kim
    Oakland'25 (To appear): In Proceedings of the 46th IEEE Symposium on Security and Privacy
    San Francisco, CA, May 2025 (Acceptance rate: 106/739=14.3%)

  3. Rakis: Secure Fast I/O Primitives Across Trust Boundaries on Intel SGX [pdf] [code]
    Mansour Alharthi, Fan Sang, Dmitrii Kuvaiskii, Mona Vij, and Taesoo Kim
    EuroSys'25 (To appear): In Proceedings of the 20th European Conference on Computer Systems
    Rotterdam, Netherlands, March-April 2025 (Acceptance rate: 32/306=10.4%)

  4. Ph.D. Thesis: Hardening and Adapting Trusted Execution Environments for Emerging Platforms [pdf]
    Fan Sang
    July 2024

  5. Sense: Enhancing Microarchitectural Awareness for TEEs via Subscription-Based Notification [pdf][slides][code]
    Fan Sang, Jaehyuk Lee, Xiaokuan Zhang, Meng Xu, Scott Constable, Yuan Xiao, Michael Steiner, Mona Vij, and Taesoo Kim
    NDSS'24: In Proceedings of the 2024 Annual Network and Distributed System Security Symposium
    San Diego, CA, USA, February 2024 (Acceptance rate: 104/694=15.0%)

  6. Prime+Retouch: When Cache is Locked and Leaked [pdf]
    Jaehyuk Lee, Fan Sang, and Taesoo Kim
    arXiv:2402.15425 [cs.CR]
    February 2024

  7. Graphene: Infrastructure Security Posture Analysis with AI-generated Attack Graphs [pdf]
    Xin Jin, Charalampos Katsis, Fan Sang, Jiahao Sun, Elisa Bertino, Ramana Kompella, and Ashish Kundu
    arXiv:2312.13119 [cs.CR]
    December 2023

  8. Pridwen: Universally Hardening SGX Programs via Load-Time Synthesis [pdf][slides][code]
    Fan Sang, Ming-Wei Shih, Sangho Lee, Xiaokuan Zhang, Michael Steiner, Mona Vij, and Taesoo Kim
    ATC'22: In Proceedings of the 2022 USENIX Annual Technical Conference
    Carlsbad, CA, USA, July 2022 (Acceptance rate: 64/394=16.2%)

  9. Edge Security: Challenges and Issues [pdf]
    Xin Jin, Charalampos Katsis, Fan Sang, Jiahao Sun, Ashish Kundu, and Ramana Kompella
    arXiv:2206.07164v1 [cs.CR]
    July 2022

  10. Hardware Support to Improve Fuzzing Performance and Precision [pdf][slides][code]
    Ren Ding, Yonghae Kim, Fan Sang, Wen Xu, Gururaj Saileshwar, and Taesoo Kim
    CCS'21: In Proceedings of the 28th ACM Conference on Computer and Communications Security
    Seoul, South Korea, November 2021 (Acceptance rate: 196/879=22.3%)

  11. P2FaaS: Toward Privacy-Preserving Fuzzing as a Service [pdf]
    Fan Sang, , Daehee Jang, Ming-Wei Shih, and Taesoo Kim
    arXiv:1909.11164 [cs.CR]
    Sep 2019

Patents

  1. Access point and communication connection method therefor
    Junbum Shin, Fan Sang, Meng Xu, and Taesoo Kim
    US20220345890A1

Professional Services

Program Committee
  • EAI International Conference on Security and Privacy in Communication Networks (SecureComm) 2024, 2025
  • European Conference on Computer Systems (EuroSys) Shadow PC 2024
  • USENIX Security Symposium (Security) Artifact Evaluation 2024
  • NYU CSAW Cyber Security Applied Research Paper Competition 2023, 2024
Reviewer
  • ACM Transactions on Privacy and Security (TOPS) 2024
  • IEEE International Conference on Data Engineering (ICDE) 2024
  • IEEE International Conference on Cloud Computing Technology and Science (CloudCom) 2023
  • IEEE International Conference on Mobility, Sensing and Networking (MSN) 2023
  • ACM Cloud Computing Security Workshop (CCSW) 2023
  • EAI International Conference on Security and Privacy in Communication Networks (SecureComm) 2023
  • IEEE Transactions on Computers (TC) 2022
  • IEEE Transactions on Dependable and Secure Computing (TDSC) 2022
External Reviewer
  • USENIX Security Symposium (Security) 2024
  • ACM Conference on Computer and Communications Security (CCS) 2019, 2024
  • ACM Asia Conference on Computer and Communications Security (AsiaCCS) 2023
  • IEEE Symposium on Security and Privacy (Oakland) 2019, 2022
  • ISOC Network and Distributed System Security Symposium (NDSS) 2020
  • ACM Symposium on Operating Systems Principles (SOSP) 2021
  • USENIX Annual Technical Conference (ATC) 2019
  • USENIX Symposium on Networked Systems Design and Implementation (NDSI) 2020

Work Experience

  • Research Internship at Cisco Research (Mentor: Dr. Ashish Kundu) May 2022 - Aug 2022
  • Research Internship at ByteDance (Mentor: Dr. Yu Ding) May 2020 - Aug 2020
  • Research Internship at Baidu X-Lab (Mentor: Dr. Tao Wei) Jun 2017 - Aug 2017

Teaching Experience

Misc.

In my spare time, I like to take photos and play guitar. During weekends, I watch F1 races if there is one, or cook food with complex recipes if there is no F1 race. I also enjoy working out in the gym and playing tennis. I live with my munchkin cat (a.k.a. corgi in cats) Soy and she is absolutely adorable.