REVIEW 3 major objections 1 minor 1 cited by
Hidden (absorbed) Cooling Flows V: Groups and Galaxies including Spirals
T0 review · 3 major / 1 minor · reviewed 2026-08-05 · deepseek-v4-flash
Pith's one-line read This paper claims that six galaxy groups and three spiral galaxies show hidden cooling flows in their X-ray spectra, with AGN feedback failing to stop them.
desk verdict An interesting abstract from a strong group, but the supplied full text is a different paper, so the central absorption-attribution claim is unverifiable from what I was given. read the letter →
The pith
A machine-rendered reading of the paper's core claim, the machinery that carries it, and where it could break.
The reading
What carries the argument
The central mechanism is the hidden cooling flow spectral signature: XMM RGS spectra of the hot, million-degree gas in a galaxy halo show emission lines and continuum modified by photoelectric absorption from cold gas embedded in the flow. Fitting that absorbed emission gives the mass cooling or deposition rate and reveals that a cooling flow is present but hidden from direct view. The same signature is applied to groups and to spirals.
What would settle it
Measure the line-of-sight velocity of the absorbing cold gas in the three spirals with high-resolution X-ray absorption spectroscopy: if the absorber's velocity tracks the host disk's rotation or sits at the galaxy's systemic velocity rather than showing inflow relative to the hot gas, the cooling-flow attribution is falsified. A simpler test is whether the spiral spectra can be fully reproduced by modeled foreground interstellar and circumgalactic absorption without any intrinsic absorber.
Extended reading notes
Core claim
The paper claims that six low-redshift galaxy groups — from the nearest fossil group to two groups hosting bright radio sources — all reveal absorbed cooling flows in their XMM RGS spectra: hot X-ray-emitting gas seen through cold, partially neutral gas that the authors interpret as embedded in the flow. It further reports that three nearby spirals, the Sombrero, Whirlpool, and Sculptor galaxies, show similarly absorbed soft X-ray spectra and may host cooling flows of 0.3 to 1.1 solar masses per year in their circumgalactic medium. The paper concludes that AGN feedback is ineffective at heating the inner cooling gas in groups and elliptical galaxies.
Load-bearing premise
The load-bearing assumption is that the cold gas absorbing the soft X-rays is embedded in the cooling flow itself, rather than unrelated cold gas along the line of sight — a particularly serious concern for spiral galaxies, which contain large amounts of cold gas in their disks.
Editorial extensions
If this is right
- The six groups, including fossil and radio-bright groups, join the hidden cooling flow population, strengthening the case that cooling flows are common in low-mass galaxy halos.
- AGN feedback in these systems does not quench the inner cooling gas, so models that rely on feedback to suppress star formation in groups and ellipticals need another heating source or a revised coupling.
- Spirals may be accreting 0.3 to 1.1 solar masses per year through their circumgalactic medium, enough to sustain star formation over long timescales.
- Soft X-ray luminosities and cooling rates in such systems would be underestimated if the absorbing cold gas is not accounted for.
- The absorbed X-ray spectral signature provides a new observational way to probe the circumgalactic medium of spiral galaxies.
Reading between the lines
- If the spiral cooling flows are real, the inflowing circumgalactic gas should eventually reach the disks and help maintain their star-forming reservoirs; a testable sign would be absorbing gas with infall velocities rather than disk-rotation or systemic velocities.
- The same RGS absorption technique could be applied to a larger sample of spirals, but the main confounder to control is the host galaxy's own cold atomic and molecular gas along the line of sight.
- The apparent ineffectiveness of AGN feedback in groups and ellipticals may imply a mass or entropy threshold below which feedback energy couples poorly to cooling gas; such a threshold could be measured by expanding the sample.
- The high cold-gas content of spiral disks makes the attribution of the absorber especially delicate, so higher-resolution X-ray absorption-line observations of the three spirals would sharpen the hidden cooling flow claim.
Signed reviews
Editorial analysis
A structured set of objections, weighed in public.
Referee Report
Summary. The manuscript, as represented by its abstract, reports XMM RGS spectral analysis of six low-redshift galaxy groups and three nearby spiral galaxies (Sombrero, Whirlpool, Sculptor). It claims that all six groups show absorbed cooling flows, that the three spirals may host cooling flows of 0.3–1.1 solar masses per year in their circumgalactic medium, and that AGN feedback is ineffective at heating the inner cooling gas in groups and elliptical galaxies. The supplied full text, however, is an unrelated cybersecurity paper on stakeholder analysis, not the cooling-flows manuscript. Consequently, the equations, tables, spectral fits, and systematic checks that would support the abstract's claims are not available for review.
Significance. If the claims are correct, the paper would extend the hidden cooling-flow phenomenon to galaxy groups and individual spiral galaxies, and would challenge the prevailing view that AGN feedback regulates cooling in low-mass systems. The conditional significance is high. However, because the actual analysis is absent from the submitted material, the manuscript currently provides no verifiable evidence for these conclusions. No strengths such as reproducible code, machine-checked proofs, or parameter-free derivations are present in the available text.
major comments (3)
- [Full Text] The supplied full text is not the manuscript described by the abstract. It is 'A Guide to Stakeholder Analysis for Cybersecurity Researchers' (arXiv:2508.14796), with no content on X-ray spectroscopy, galaxy groups, cooling flows, or AGN feedback. The central evidence—spectral fits, model choices, absorption column measurements, and statistical uncertainties—is therefore entirely missing. This is not a local presentation issue; it makes the paper's central claims untestable from the submitted material.
- [Abstract, sentence 3] The load-bearing interpretation is that the photoelectric absorption modifying the soft X-ray emission is caused by cold gas 'intrinsic to the flow.' The abstract provides no exclusions of alternative absorbers: no comparison of fitted column densities to known Galactic HI columns, no spatial or spectral diagnostics separating embedded absorbers from circumgalactic or disk gas, and no treatment of the spiral galaxies' own ISM/CGM along the line of sight. For the spirals in particular, cold gas in the host disk or halo could produce the same spectral softening with no cooling flow, so the inferred rates of 0.3–1.1 Msun/yr are unsupported as cooling-flow rates.
- [Abstract, flow rates] The reported flow rates appear without uncertainties or significance statements. It is therefore impossible to judge whether the detections are statistically distinct from zero or from a foreground-only model. Given that the abstract asserts 'All reveal absorbed cooling flows' and 'AGN feedback is ineffective,' the absence of error bars and model-comparison statistics is a substantive gap, not a stylistic one.
minor comments (1)
- [Abstract] The LaTeX macro '\Msun/yr' is not typeset in the abstract; it should be rendered as solar masses per year (M_sun/yr).
Circularity Check
The 'detection' of cooling flows is the fitted absorption model's own assumption (absorber intrinsic to the flow), and the supplied full text is an unrelated paper, so the derivation cannot be independently audited.
-
fitted input called prediction
[Abstract, sentences 3, 6, and 9]
"X-ray spectra from the XMM RGS reveal emission from hot gas modified by photoelectric absorption by cold gas intrinsic to the flow. ... All reveal absorbed cooling flows. ... They have similar absorbed soft X-ray spectra to elliptical galaxies and may also host cooling flows of 0.3 to 1.1 Msun/yr in their CircumGalactic Medium."
The spectral model used to fit the data already assumes the photoelectric absorber is 'cold gas intrinsic to the flow.' The fitted absorption column is then reported as the detection of an 'absorbed cooling flow,' and the quoted 0.3–1.1 Msun/yr rates are derived from that same fitted absorber under the cooling-flow model. The data constrain only the line-of-sight absorbing column; they do not constrain whether the absorber is part of a cooling flow, foreground Galactic gas, or, for the spirals, the host galaxy's own ISM/CGM. Thus the cooling-flow 'prediction' is the model's input assumption (intrinsic absorbing gas) renamed as a detection, rather than an independent inference.
full rationale
The one exhibitable circular step is the abstract's identification of the fitted photoelectric absorption with 'cold gas intrinsic to the flow.' Because the cooling-flow rate is computed from that assumed absorber under the hidden-cooling-flow model, the claim 'All reveal absorbed cooling flows' is partly the model's own assumption returned as an output. This is a fitted-input-called-prediction circularity: the absorption itself may be real, but its attribution to a cooling flow is not independently derived. Foreground Galactic absorption and, for the spiral galaxies, the host disk/CGM provide equally plausible alternative absorbers that would produce the same spectral softening without any cooling flow. The abstract supplies no exclusions, geometries, or checks removing those alternatives. Separately, the supplied 'Full Text' is not this cooling-flows manuscript; it is an unrelated cybersecurity stakeholder-analysis guide (arXiv:2508.14796). That missing full text does not itself prove circularity, but it removes the possibility of auditing the actual spectral fits, error bars, and systematic checks, so the circularity concern rests on the abstract's own wording. No self-citation chain or imported uniqueness theorem is involved. Score 6 reflects one central prediction reducing by construction to the model's assumed absorber, while the fitted absorption feature itself may still be a genuine spectral measurement.
Assumptions & free parameters
free parameters (3)
- Cooling flow mass deposition rate =
0.3 to 1.1 Msun/yr (spirals); group values not stated in the abstract
- Intrinsic photoelectric absorption column density (N_H) =
Not stated in the abstract
- Hot gas spectral model parameters (temperature, emission measure, abundances) =
Not stated in the abstract
assumptions (3)
- domain assumption The soft X-ray emission is dominated by hot gas whose spectrum is correctly described by the assumed emission model with superimposed photoelectric absorption.
- domain assumption The absorbing cold gas is located inside the cooling flow, not in the Milky Way foreground, the host galaxy's disk, or unrelated circumgalactic material.
- domain assumption The hidden cooling flow spectral method established in the earlier papers of this series is valid and applies to groups and spirals.
Cite this review
Pith. "Pith review of Hidden (absorbed) Cooling Flows V: Groups and Galaxies including Spirals." pith.science (2026). https://pith.science/paper/WGJ47BSF
@misc{pith2026250814785,
author = {Pith},
title = {Pith review of: Hidden (absorbed) Cooling Flows V: Groups and Galaxies including Spirals},
year = {2026},
howpublished = {\url{https://pith.science/paper/WGJ47BSF}},
note = {Machine review of arXiv:2508.14785}
}
read the original abstract
Cooling flows are observed in X-ray studies of the centres of cool core clusters, galaxy groups and individual elliptical galaxies. They are partly hidden from direct view by embedded cold gas so have been called Hidden Cooling Flows. X-ray spectra from the XMM RGS reveal emission from hot gas modified by photoelectric absorption by cold gas intrinsic to the flow. Here we present the spectral analysis of 6 more low redshift galaxy groups ranging from the nearest fossil group to 2 groups hosting bright radio sources. All reveal absorbed cooling flows. AGN feedback is ineffective in heating the inner cooling gas in groups and elliptical galaxies. We have extended the analysis to include 3 nearby spiral galaxies (the Sombrero, Whirlpool and Sculptor galaxies). They have similar absorbed soft X-ray spectra to elliptical galaxies and may also host cooling flows of 0.3 to 1.1\Msun/yr in their CircumGalactic Medium.
Forward citations
Cited by 1 Pith paper
-
Even central galaxies feel their environment: cosmic siphoning of cool gas accretion
Isolated central galaxies near massive halos are systematically more gas-poor than group centrals of the same black hole mass and star-formation offset, evidence for environment-driven gas removal.
Reference graph
Works this paper leans on
-
[1]
The moral character of cryptographic work,
P. Rogaway, “The moral character of cryptographic work,” Cryptology ePrint Archive, 2015
work page 2015
-
[2]
Message from the usenix security ’25 program co-chairs,
USENIX Security Symposium 2025 Program Co- Chairs, “Message from the usenix security ’25 program co-chairs,” 2025, accessed: 2025-08-14. [Online]. Avail- able: https://www.usenix.org/sites/default/files/sec25_ message.pdf
work page 2025
-
[3]
USENIX Security ’26 Call for Papers,
USENIX Security Symposium 2026 Program Committee, “USENIX Security ’26 Call for Papers,” 2025, accessed: 2025-07-31. [On- line]. Available: https://www.usenix.org/conference/ usenixsecurity26/call-for-papers
work page 2026
-
[4]
The menlo report: Ethical principles guiding information and commu- nication technology research,
D. Dittrich and E. Kenneally, “The menlo report: Ethical principles guiding information and commu- nication technology research,” U.S. Department of Homeland Security, Tech. Rep., 2012. [Online]. Avail- able: https://www.caida.org/publications/papers/2012/ menlo_report_actual_formatted/
work page 2012
-
[5]
T. L. Beauchamp and J. F. Childress, Principles of Biomedical Ethics, 8th ed. Oxford University Press, 2019
work page 2019
-
[6]
Ethical frameworks and computer security trolley problems: foundations for conversations,
T. Kohno, Y . Acar, and W. Loh, “Ethical frameworks and computer security trolley problems: foundations for conversations,” in2023 Proceedings of the 32th USENIX Security Symposium, 2023, pp. 5145–5162
work page 2023
-
[7]
B. Friedman, P. H. Kahn Jr., and A. Borning, Value Sensitive Design and Information Systems . John Wiley & Sons, Ltd, 2008, ch. 4, pp. 69–101. [Online]. Available: https://onlinelibrary.wiley.com/doi/abs/10. 1002/9780470281819.ch4
work page 2008
-
[8]
J. S. Mill, Utilitarianism. Parker, Son, and Bourn, 1863
Show all 61 references
-
[9]
Kant,Groundwork of the Metaphysics of Morals, 1785, translated by Mary Gregor (Cambridge Unviersity Press, 2nd ed., 2012)
I. Kant,Groundwork of the Metaphysics of Morals, 1785, translated by Mary Gregor (Cambridge Unviersity Press, 2nd ed., 2012)
2012
-
[10]
Modern moral philosophy,
G. Anscombe, “Modern moral philosophy,” Philosophy, vol. 33, no. 124, pp. 1–19, 1958
1958
-
[11]
Shostack, Threat Modeling: Designing for Security
A. Shostack, Threat Modeling: Designing for Security. Wiley, 2014
2014
-
[12]
Stakeholder identification in the requirements engineering pro- cess,
H. Sharp, A. Finkelstein, and G. Galal, “Stakeholder identification in the requirements engineering pro- cess,” in Proceedings. Tenth International Workshop on Database and Expert Systems Applications. DEXA 99, 1999, pp. 387–391
1999
-
[13]
R. E. Freeman, Strategic Management: A Stakeholder Approach. Pitman Publishing, 1984
1984
-
[14]
N. G. Leveson, Engineering a Safer World: Systems Thinking Applied to Safety. MIT Press, 2012
2012
-
[15]
Sommerville and P
I. Sommerville and P. Sawyer,Requirements Engineer- ing: A Good Practice Guide, 1st ed. USA: John Wiley & Sons, Inc., 1997
1997
-
[16]
Viewpoints: principles, problems and a practi- cal approach to requirements engineering,
——, “Viewpoints: principles, problems and a practi- cal approach to requirements engineering,” Annals of software engineering, vol. 3, no. 1, pp. 101–130, 1997
1997
-
[17]
Com- puter security resource center glossary: Cybersecurity,
National Institute of Standards and Technology, “Com- puter security resource center glossary: Cybersecurity,” 2024, accessed: 2025-07-31. [Online]. Available: https://csrc.nist.gov/glossary/term/cybersecurity
2024
-
[18]
Call for Papers,
IEEE S&P 2025 Program Committee, “Call for Papers,” 2024, accessed: 2025-07-31. [Online]. Available: https://sp2025.ieee-security.org/cfpapers.html
2025
-
[19]
USENIX Security ’25 Call for Papers,
USENIX Security Symposium 2025 Program Committee, “USENIX Security ’25 Call for Papers,” 2024, accessed: 2025-07-31. [On- line]. Available: https://www.usenix.org/conference/ usenixsecurity25/call-for-papers
2025
-
[20]
NDSS Symposium 2025 Call for Pa- pers,
NDSS Symposium 2025 Program Commit- tee, “NDSS Symposium 2025 Call for Pa- pers,” 2024, accessed: 2025-07-31. [Online]. Available: https://www.ndss-symposium.org/ndss2025/ submissions/call-for-papers/
2025
-
[21]
Call for Papers,
ACM CCS 2025 Program Committee, “Call for Papers,” 2024, accessed: 2025-07-31. [Online]. Available: https://www.sigsac.org/ccs/CCS2025/call-for-papers/
2025
-
[22]
Robust de- anonymization of large sparse datasets,
A. Narayanan and V . Shmatikov, “Robust de- anonymization of large sparse datasets,” in Proceedings of the IEEE Symposium on Security and Privacy . IEEE, 2008, pp. 111–125
2008
-
[23]
Ethics in emerg- ing technology: A particular focus on data and privacy,
J. Metcalf, E. Keller, and d. boyd, “Ethics in emerg- ing technology: A particular focus on data and privacy,” Journal of Information, Communication and Ethics in Society, vol. 14, no. 2, pp. 77–92, 2016
2016
-
[24]
Au- tomatic patch-based exploit generation is possible: Tech- niques and implications,
D. Brumley, P. Poosankam, D. Song, and J. Zheng, “Au- tomatic patch-based exploit generation is possible: Tech- niques and implications,” in 2008 IEEE Symposium on Security and Privacy (sp 2008). IEEE, 2008, pp. 143– 157
2008
-
[25]
Dual-use and dilemmas for cybersecurity, peace and technology assessment,
T. Riebe and C. Reuter, “Dual-use and dilemmas for cybersecurity, peace and technology assessment,” inIn- formation Technology for Peace and Security: IT Ap- plications and Infrastructures in Conflicts, Crises, War, and Peace. Springer, 2019, pp. 165–183. 10
2019
-
[26]
Rowhammer: A retrospec- tive,
O. Mutlu and J. S. Kim, “Rowhammer: A retrospec- tive,” IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems, vol. 39, no. 8, pp. 1555–1571, 2019
2019
-
[27]
Empirical Standards for Software Engi- neering Research,
P. Ralph et al., “Empirical Standards for Software Engi- neering Research,” arXiv:2010.03525 [cs.SE], 2021
2010
-
[28]
An industry interview study of software signing for supply chain security,
K. G. Kalu, T. Singla, C. Okafor, S. Torres-Arias, and J. C. Davis, “An industry interview study of software signing for supply chain security,” in 2025 Proceedings of the 34th USENIX Security Symposium, 2025, pp. 81– 100
2025
-
[29]
"all of them claim to be the best
R. Ramesh, A. Vyas, and R. Ensafi, “"all of them claim to be the best": Multi-perspective study of VPN users and VPN providers,” in 32nd USENIX Security Symposium (USENIX Security 23) . Anaheim, CA: USENIX Association, Aug. 2023, pp. 5773–5789. [Online]. Available: https://www...
2023
-
[30]
Tracking you from a thousand miles away! turning a bluetooth device into an apple airtag without root privileges,
J. Chen, X. Ma, L. Luo, and Q. Zeng, “Tracking you from a thousand miles away! turning a bluetooth device into an apple airtag without root privileges,” in 2025 Proceedings of the 34th USENIX Security Symposium, 2025, pp. 4345–4362
2025
-
[31]
Exposing the guardrails: Reverse-engineering and jailbreaking safety filters in dall ·e text-to-image pipelines,
C. Villa, S. Mirza, and C. Pöpper, “Exposing the guardrails: Reverse-engineering and jailbreaking safety filters in dall ·e text-to-image pipelines,” in 2025 Pro- ceedings of the 34th USENIX Security Symposium, 2025, pp. 897–916
2025
-
[32]
Systematically detecting packet validation vulnerabilities in embedded network stacks,
P. C. Amusuo, R. A. C. Méndez, Z. Xu, A. Machiry, and J. C. Davis, “Systematically detecting packet validation vulnerabilities in embedded network stacks,” in 2023 38th IEEE/ACM International Conference on Automated Software Engineering (ASE), 2023, pp. 926–938
2023
-
[33]
Catch-22: Uncovering compromised hosts using ssh public keys,
C. Munteanu, G. Smaragdakis, A. Feldmann, and T. Fiebig, “Catch-22: Uncovering compromised hosts using ssh public keys,” in 2025 Proceedings of the 34th USENIX Security Symposium, 2025, pp. 861–878
2025
-
[34]
Do unit proofs work? an empirical study of compositional bounded model checking for memory safety verification,
P. C. Amusuo, O. Cochell, T. L. Lievre, P. V . Patil, A. Machiry, and J. C. Davis, “Do unit proofs work? an empirical study of compositional bounded model checking for memory safety verification,”arXiv preprint arXiv:2503.13762, 2025
2025 arXiv
-
[35]
Smudged finger- prints: Characterizing and improving the performance of web application fingerprinting,
B. Kondracki and N. Nikiforakis, “Smudged finger- prints: Characterizing and improving the performance of web application fingerprinting,” in 33rd USENIX Se- curity Symposium (USENIX Security 24). Philadelphia, PA: USENIX Association, Aug. 2024, pp. 4625–4640. [Online]. Availa...
2024
-
[36]
Llms cannot reliably identify and reason about security vulnerabilities (yet?): A comprehensive evaluation, framework, and benchmarks,
S. Ullah, M. Han, S. Pujar, H. Pearce, A. Coskun, and G. Stringhini, “Llms cannot reliably identify and reason about security vulnerabilities (yet?): A comprehensive evaluation, framework, and benchmarks,” in2024 IEEE Symposium on Security and Privacy (SP), 2024, pp. 862– 880
2024
-
[37]
ZTDjava: Mitigating software supply chain vulnerabil- ities via zero-trust dependencies,
P. C. Amusuo, K. A. Robinson, T. Singla, H. Peng, A. Machiry, S. Torres-Arias, L. Simon, and J. C. Davis, “ZTDjava: Mitigating software supply chain vulnerabil- ities via zero-trust dependencies,” in 2025 IEEE/ACM 47th International Conference on Software Engineering (ICSE), 2...
2025
-
[38]
ENG25519: Faster TLS 1.3 handshake using optimized x25519 and ed25519,
J. Zhang, J. Huang, L. Zhao, D. Chen, and Ç. K. Koç, “ENG25519: Faster TLS 1.3 handshake using optimized x25519 and ed25519,” in 33rd USENIX Security Symposium (USENIX Security 24). Philadelphia, PA: USENIX Association, Aug. 2024, pp. 6381–6398. [Online]. Available: https://ww...
2024
-
[39]
Fourteen years in the life: A root Server’s perspective on DNS resolver security,
A. Hilton, C. Deccio, and J. Davis, “Fourteen years in the life: A root Server’s perspective on DNS resolver security,” in 32nd USENIX Security Symposium (USENIX Security 23) . Anaheim, CA: USENIX Association, Aug. 2023, pp. 3171–3186. [Online]. Available: https://www.usenix.o...
2023
-
[40]
Sok: Digging into the digital underworld of stolen data markets,
T. Marjanov and A. Hutchings, “Sok: Digging into the digital underworld of stolen data markets,” in2025 IEEE Symposium on Security and Privacy (SP), 2025, pp. 1– 18
2025
-
[41]
Sok: A privacy framework for security research using social media data,
K. Beadle, K. I. Turk, A. Eusebi, M. Tran, M. Ordekian, E. Mariconti, Y . Zou, and M. Vasek, “Sok: A privacy framework for security research using social media data,” in 2025 IEEE Symposium on Security and Privacy (SP), 2025, pp. 1178–1196
2025
-
[42]
Sok: Security and privacy of blockchain interoperability,
A. Augusto, R. Belchior, M. Correia, A. Vasconcelos, L. Zhang, and T. Hardjono, “Sok: Security and privacy of blockchain interoperability,” in 2024 IEEE Sympo- sium on Security and Privacy (SP) , 2024, pp. 3840– 3865
2024
-
[43]
Sok: Understanding zk-snarks: The gap between re- search and practice,
J. Liang, D. Hu, P. Wu, Y . Yang, Q. Shen, and Z. Wu, “Sok: Understanding zk-snarks: The gap between re- search and practice,” in 2025 Proceedings of the 34th USENIX Security Symposium, 2025, pp. 2085–2104
2025
-
[44]
We really need to talk about session tickets: A Large-Scale analy- sis of cryptographic dangers with TLS session tickets,
S. Hebrok, S. Nachtigall, M. Maehren, N. Erinola, R. Merget, J. Somorovsky, and J. Schwenk, “We really need to talk about session tickets: A Large-Scale analy- sis of cryptographic dangers with TLS session tickets,” in 32nd USENIX Security Symposium (USENIX Security 11 23). An...
2023
-
[45]
Where urls become weapons: Automated discovery of ssrf vulnerabilities in web applications,
E. Wang, J. Chen, W. Xie, C. Wang, Y . Gao, Z. Wang, H. Duan, Y . Liu, and B. Wang, “Where urls become weapons: Automated discovery of ssrf vulnerabilities in web applications,” in2024 IEEE Symposium on Security and Privacy (SP), 2024, pp. 239–257
2024
-
[46]
Spill the TeA: An empirical study of trusted application rollback preven- tion on android smartphones,
M. Busch, P. Mao, and M. Payer, “Spill the TeA: An empirical study of trusted application rollback preven- tion on android smartphones,” in 33rd USENIX Security Symposium (USENIX Security 24). Philadelphia, PA: USENIX Association, Aug. 2024, pp. 5071–5088. [Online]. Available:...
2024
-
[47]
Fledg- ing will continue until privacy improves: Empirical analysis of google’s Privacy-Preserving targeted advertising,
G. Calderonio, M. M. Ali, and J. Polakis, “Fledg- ing will continue until privacy improves: Empirical analysis of google’s Privacy-Preserving targeted advertising,” in 33rd USENIX Security Sympo- sium (USENIX Security 24) . Philadelphia, PA: USENIX Association, Aug. 2024, pp. ...
2024
-
[48]
Back to school: On the (In)Security of academic VPNs,
K. L. Wu, M. H. Hue, N. M. Poon, K. M. Leung, W. Y . Po, K. T. Wong, S. H. Hui, and S. Y . Chau, “Back to school: On the (In)Security of academic VPNs,” in 32nd USENIX Security Symposium (USENIX Security 23) . Anaheim, CA: USENIX Association, Aug. 2023, pp. 5737–5754. [Online]...
2023
-
[49]
Speedrunning the maze: Meeting regulatory patching deadlines in a large enterprise environment,
G. t. Napel, M. van Eeten, and S. Parkin, “Speedrunning the maze: Meeting regulatory patching deadlines in a large enterprise environment,” in2025 IEEE Symposium on Security and Privacy (SP), 2025, pp. 504–521
2025
-
[50]
Learning with seman- tics: Towards a Semantics-Aware routing anomaly detection system,
Y . Chen, Q. Yin, Q. Li, Z. Liu, K. Xu, Y . Xu, M. Xu, Z. Liu, and J. Wu, “Learning with seman- tics: Towards a Semantics-Aware routing anomaly detection system,” in 33rd USENIX Security Sym- posium (USENIX Security 24) . Philadelphia, PA: USENIX Association, Aug. 2024, pp. 51...
2024
-
[51]
TreeSync: Authenticated group management for messaging layer security,
T. Wallez, J. Protzenko, B. Beurdouche, and K. Bharga- van, “TreeSync: Authenticated group management for messaging layer security,” in 32nd USENIX Security Symposium (USENIX Security 23) . Anaheim, CA: USENIX Association, Aug. 2023, pp. 1217–1233. [Online]. Available: https:/...
2023
-
[52]
Kairos: Practical intrusion detection and investigation using whole-system provenance,
Z. Cheng, Q. Lv, J. Liang, Y . Wang, D. Sun, T. Pasquier, and X. Han, “Kairos: Practical intrusion detection and investigation using whole-system provenance,” in2024 IEEE Symposium on Security and Privacy (SP), 2024, pp. 3533–3551
2024
-
[53]
Hofstede, G
G. Hofstede, G. J. Hofstede, and M. Minkov, Cul- tures and Organizations: Software of the Mind, 3rd ed. McGraw-Hill, 2010
2010
-
[54]
Engineering ethics in global context: Four fundamental approaches,
Q. Zhu and B. K. Jesiek, “Engineering ethics in global context: Four fundamental approaches,” in 2017 ASEE Annual Conference & Exposition, 2017
2017
-
[55]
Practicing engineering ethics in global context: A comparative study of expert and novice approaches to cross-cultural ethical situations,
——, “Practicing engineering ethics in global context: A comparative study of expert and novice approaches to cross-cultural ethical situations,” Science and Engi- neering Ethics, vol. 26, no. 4, pp. 2097–2120, 2020
-
[56]
On the feasibility of stealthily in- troducing vulnerabilities in open-source software via hypocrite commit,
Y . Wu and K. Lu, “On the feasibility of stealthily in- troducing vulnerabilities in open-source software via hypocrite commit,” in 2021 IEEE Symposium on Secu- rity and Privacy (SP), 2021, retracted
2021
-
[57]
Russian Foreign Intelligence Service (SVR) Exploiting JetBrains TeamCity CVE Globally,
Cybersecurity and Infrastructure Security Agency, “Russian Foreign Intelligence Service (SVR) Exploiting JetBrains TeamCity CVE Globally,” 2023, accessed: 2025-07-31. [Online]. Available: https://www.cisa.gov/ news-events/cybersecurity-advisories/aa23-347a
2023
-
[58]
Mandiant Exposes APT1 – One of China’s Cyber Espionage Units – and Releases 3,000 Indicators,
D. Mcwhorter, “Mandiant Exposes APT1 – One of China’s Cyber Espionage Units – and Releases 3,000 Indicators,” 2013, accessed: 2025-07-31. [On- line]. Available: https://www.mandiant.com/resources/ apt1-exposing-one-of-chinas-cyber-espionage-units
2013
-
[59]
Documents Reveal Top NSA Hacking Unit,
V on SPIEGEL Staff, “Documents Reveal Top NSA Hacking Unit,” 2013, accessed: 2025-07-31. [Online]. Available: https://www.spiegel.de/international/world/ a-940969.html
2013
-
[60]
Unit 8200,
“Unit 8200,” accessed: 2025-08-19. [Online]. Available: https://en.wikipedia.org/wiki/Unit_8200
2025
-
[61]
Internet organised crime threat assessment (iocta),
“Internet organised crime threat assessment (iocta),” Europol, Tech. Rep., 2023. [Online]. Avail- able: https://www.europol.europa.eu/cms/sites/default/ files/documents/IOCTA%202023%20-%20EN_0.pdf 12
2023
Reviewed August 5, 2026 · model on record in the stance chip above.
Discussion (0). Continue with ORCID to comment.