CSS 2026

The 16th International Symposium on Cyberspace Safety and Security
Macau, China
August 3-5, 2026

Program

CSS 2026 will be held on August 3–5, 2026 in Macau, China. The programme below is provisional and subject to change.

Download Full Program (PDF)

The booklet contains the welcome message, committees, keynote abstracts, full paper sessions and venue information.

Programme Overview

TimeRoomSession
Day 1 Aug 3, 2026
08:30-18:00FoyerRegistration
09:10-09:30Room 24+25Opening Ceremony
09:30-10:00Room 24+25Keynote 1 Robert Deng
10:00-10:30FoyerCoffee Break & Poster Session 1
10:30-11:00Room 24+25Keynote 2 Xiaosong Zhang
11:00-11:30Room 24+25Keynote 3 Aniello Castiglione
11:30-13:00Room 24+25CSS Oral Session 1: LLM Safety & Jailbreak Defense
13:00-14:00Room 2+3Lunch
14:00-15:30Room 24+25CSS Oral Session 2: Trustworthy & Fair Machine Learning
15:30-16:00FoyerCoffee Break & Poster Session 2
16:00-18:00Room 24+25CSS Oral Session 3: Machine Unlearning / Safety-Critical & Autonomous Systems
16:00-18:00Room 26CSS Oral Session 4: Time-Series Anomaly Detection & Forecasting
Day 2 Aug 4, 2026
08:30-18:00FoyerRegistration
09:00-09:30Room 24+25Keynote 4 Jianwei Liu
09:30-10:00Room 24+25Keynote 5 Shengke Zeng
10:00-10:30FoyerCoffee Break & Poster Session 3
10:30-11:00Room 24+25Keynote 6 Chiara Pero
11:00-12:30Room 24+25CSS Oral Session 5: AIGC & Multimodal Security
12:30-14:00Room 2+3Lunch
14:00-15:30Room 24+25CSS Oral Session 6: Authentication, Cryptography & Protocols
15:30-16:00FoyerCoffee Break & Poster Session 4
16:00-17:30Room 24+25CSS Oral Session 7: Vulnerability Detection & Network Security
16:00-17:30Room 26CSS Oral Session 8: Privacy-Preserving Learning & Applications
/ ASR Session: Agentic & 6G Network Security
18:30-21:00Lisboeta MacauBanquet
Day 3 Aug 5, 2026
08:00-12:00Technical Visit & Cultural Tour

Detailed Sessions

CSS Oral Session 1: LLM Safety & Jailbreak Defense

Day 1 · Aug 3, 2026 · 11:30–13:00 · Room 24+25

#32The TDIS Framework: Automated Synthesis of Adversarial Descriptions to Jailbreak LLM Tool Use
Xu Xin
#68Visual Feedback-Based Prompt Pollution Attack on Large Language Model-Driven Intelligent Systems: A Case Study with Smart Car Platform
Junrui Li, Heng Xu and Jie Xi
#70A Safety-Enhanced Retrieval-Augmented Generation Framework with Risk-Aware Retrieval and Lightweight Validation
Kaijie Ma
#85Graded Detection Against Multi-Turn Jailbreak Attacks
Zonglin Zhu, Qiming Wang and Chunxiao Zhang
#95TrustScore: Risk-Aware Framework for LLM Hallucination Detection
一和 赵 and Cong Cong Zhu
#99A White-Box Jailbreak Defense Method for LLMs Based on Semantic Probe Conflict
Xiang Zhou, Shuai Zhou and Mingyu Zhu

CSS Oral Session 2: Trustworthy & Fair Machine Learning

Day 1 · Aug 3, 2026 · 14:00–15:30 · Room 24+25

#8Bias-Corrected Momentum and Dynamic Step Bounding for Transferable Re-ID Attacks
Hailin Yang and Huajie Chen
#22Adversarially Consistent Representation Learning: A Unified Regularization Framework for Robust Deep Models
Xiang Zhang, Feng Wang, Qingxuan Luo, Xinghua Li, Wenqi Duan and Yuantao Wang
#43SHRED: Unified Adaptive Subspace Purification Defense Against Deep Hashing Backdoor Attacks
Leyang Zhang and Qi Zhong
#45MaxSim Hijack: Poisoning Multimodal RAG with Token-Aligned Patch Allocation
Weicheng Xing, Mengyang Wu, Jenny Wang, Jacko Feng and Bo Liu
#47A Game-Theoretic Defense against Membership Inference Attacks
Guangkai Jiang and Yuchen Shi
#61Fair Learning without Semantic Demographic Attributes via Curvature-Based Optimization
Zihou Zhao, Huiqiang Chen and Tianqing Zhu

CSS Oral Session 3: Machine Unlearning / Safety-Critical & Autonomous Systems

Day 1 · Aug 3, 2026 · 16:00–18:00 · Room 24+25

#10GAU: A Data-free Black-box Adversarial Unlearning Framework via Generative Model
Mingze Sun, Hui Sun, Yubo Wang and Dong Xu
#13Design and Implementation of a Lightweight Model Federated Unlearning Framework for Resource-Constrained Edge Devices
Ming Zhang and Minghao Wang
#27Dual-Channel Fine-Grained Reinforcement Unlearning: Integrating Reward Shaping and State Perturbation for Selective Forgetting
Xinbo Fu and Lefeng Zhang
#44Dual-SU: Sequential Unlearning via Influence Localization and Representation Perturbation
Xun Zhang, Hengzhu Liu, Haoyuan Chen, Wenbin Shen and Qiyu Chen
#2Decentralized Multi-UAV Coordination for Robust Scheduling in Dynamic Environments
Xuanyi Qi, Huinan Zhang, Kai Li, Tiansi Li and Hongyi Liu
#11LLM-Driven Formal Verification for Safety-Critical Railway Control Systems
Hongxue Chen, Tianjian Liu, Yiwen Xia and Pengrui Liu
#23Safety Modeling and Verification of Perception-Enhanced Autonomous Train Control Systems Using Timed Automata
Qiang Li and Sheng Wen
#46KQHA: An Adaptive Dynamic Auto-Scaling Controller
Xi Luo, Baoru Li, Lihua Yin, Haoqin Chen, Yingkai Fan and Naqin Zhou

CSS Oral Session 4: Time-Series Anomaly Detection & Forecasting

Day 1 · Aug 3, 2026 · 16:00–18:00 · Room 26

#29SMA-AD: Self-Supervised Margin-Aware Multivariate Time Series Anomaly Detection
Fangzhe Zhang, Hao Zhang, Rui Wang, Fuhui Zhao, Mai Ye, Yourong Li and Hongyi Liu
#30SemDC: A Semi-supervised Anomaly Detection Approach for Time Series with Redundant Variates via Dimension Complement
Yingxian Chang, Xin Liu, Donglan Liu, Fuhui Zhao, Fangzhe Zhang and Hongyi Liu
#49VAAD: A Variate-Aware Method for Multivariate Time-Series Anomaly Detection
Shanjie Xu, Jingyu Wang, Xin Liu, Yuhui Jin, Honglei Yao and Hongyi Liu
#51Federated Learning-Based Multi-Source Time Series Fusion for Forecasting
Guidong Zhang, Mai Ye, Xin Liu, Donglan Liu, Hao Yu, Bing Su and Hongyi Liu
#62LitePriv: A Lightweight On-chip Real-Time Privacy Protection Method for IoT Time Series
Yizhao Zhou, Xinyu Chen, Li Kuang, Jia-Nan Liu, Fengjun Xiao, Lijian Mao, Bangjie Tang, Heng Jin and Yingjie Xia

CSS Oral Session 5: AIGC & Multimodal Security

Day 2 · Aug 4, 2026 · 11:00–12:30 · Room 24+25

#15Beyond Explicit Decoding: An Implicit Tracing Framework Based on TS-Mark Watermarks and GTD-Net Tracer Datasets
Yufeng Pan, Yonghai Wang and Gengshen Wu
#33DSER: Generative Image Detection Based on Dual-Space Reconstruction Error
Xu Xin
#41TL-FSGW: A Hybrid Text Watermarking Framework for Large Language Models with Frame Synchronization and Adaptive Skipping
Haoyuan Huang
#50SafeRendering: Harnessing Attention for Prohibited Concept Removal Autoregressive Models
Sihui Wu and Yilin Yang
#60On the Vulnerability of Cross-Modal Symmetry in Multimodal AIGC Systems
Jin Wei, Siyu Zhang, Yuchang Mo, Yunfei Li and Mirlan Chynybaev
#77A Transformer-Based Multi-Modal Feature Fusion Enhanced DenseNet for Medical Image Classification
Honggang Wei, Chuanhao Jing and Yu Fu

CSS Oral Session 6: Authentication, Cryptography & Protocols

Day 2 · Aug 4, 2026 · 14:00–15:30 · Room 24+25

#3A Lightweight Anonymous Authentication and Key Agreement Protocol for Wearable Devices Using PUF
Fangchen Xu, Juncheng Tong, Huijie Yang, Xinyu Li and Quanrun Li
#31Information-Limited Login Oracles: Reducing Feedback Leakage for Online Password Guessing
William Mengyang Wu, Weicheng Xing, Xuhan Zuo, Minghao Wang and Tianqing Zhu
#93SAML: A Secure Anti-Money Laundering Scheme with Multi-Client Functional Encryption
Peng Yu, Yuzhu Wang, Yu Chen, Qing Ye and Mingwu Zhang
#107The Light at the End of the (TLS) Tunnel: Dynamic Cryptographic and Protocol-Downgrade Analysis of Web Traffic
Aniello Castiglione, Davide De Angelis, Alessia Maffei, Alberto Moccardi, Chiara Pero and Zhiyuan Tan
#113Combating Visual Disinformation: A Post-Quantum Cryptographic Framework for Image and Metadata Integrity
Aniello Castiglione, Jacopo Gennaro Esposito, Vincenzo Loia, Michele Nappi, Chiara Pero and Florin Pop
#123A Secure and Lightweight Authentication and Key Agreement Protocol Against Ephemeral Secret Leakage Attacks for the Internet of Drones
Sijia Li, Jianwei Liu, Hua Guo and Haojia Qi

CSS Oral Session 7: Vulnerability Detection & Network Security

Day 2 · Aug 4, 2026 · 16:00–17:30 · Room 24+25

#9MA-HGAT: Multi-Agent Heterogeneous Graph Attention Network for Smart Contract Logical Vulnerability Detection
Jialin Li, Minfeng Qi, Lefeng Zhang, Yaxuan Xiong, Zhe Sun and Tianqing Zhu
#14Add character noise to the network side channel
Liu Yunqiang
#65Certificateless Privacy-Preserving Integrity Auditing and Sanitizable Data Sharing for Cloud-Based Electronic Medical Records
Lingzhu Li, Xiaoying Jia, Cong Peng and Zhiyan Xu
#82Cyber Insurance Forensics and Attribution in the Encrypted Ecosystem: A GNN-based Non-decrypting Traffic Analysis Approach
Qiang Li, Rongqi Jing and Qianwen Sun
#83ArchVul: Architecture-Aware Hybrid RAG for Vulnerability Detection in Enterprise Java
Xiaowei Zhang, Shigang Liu, Jun Zhang and Yang Xiang
#118SoK: Application-Layer Denial-of-Service in OCPP-Based EV Charging: Denial Pathways, Observability Regimes, and Evidence Gaps
Amarjot Singh Atwal, Yang Xiang, Prem Prakash Jayaraman and Xiaoning Du

CSS Oral Session 8: Privacy-Preserving Learning & Applications

Day 2 · Aug 4, 2026 · 16:00–17:30 · Room 26

#21Hadoop MapReduce-based “People You May Know” Friend Recommendation
Zi Xie
#36SMART: SMT-Augmented Multi-Agent Reasoning for Travel
Wang Yixiang and Zhu Congcong
#69A Privacy-by-Design Heterogeneous Graph Reasoning for Cross-Entity Stance Inference
Zehan Li, Xuemeng Zhai, Hangyu Hu, Jiandong Liang and Guangmin Hu
#78Multi-Source Representation Learning for Federated and Privacy-Preserving Emotion Recognition
Qinyuan Wang, Ming Liu, Kewen Liao, Guangyan Huang, Y. Neil Qu, Bruce Gu and Longxiang Gao

ASR Session: Agentic & 6G Network Security

Day 2 · Aug 4, 2026 · 16:00–17:30 · Room 26

#71Agent Card Module Security Analysis and Vulnerability Discovery: A Review of A2A Protocol Security Research
Wang Yian, Liu Zhen and Wang Yajie
#92Distributed AoI-aware AI-driven Anomaly Detection for Secure Service Function Chains in 6G Networks
Wenjun Huang, Zixiao Kong, Yingtian Sun and Rui Huang