manhattan skyline

Hang Zhao
Postdoctoral Research Scientist

604 Schapiro (CEPSR)
Department of Computer Science
Columbia University
Email: zhao AT cs DOT columbia DOT edu

About Me

I'm a postdoctoral research scientist at Columbia University. I work with Professor Salvatore Stolfo as a member of IDS, the Intrusion Detection Systems lab. My research interests are distributed security policy management and cloud security. I completed my PhD in computer science at Columbia University in 2012. My research adviser was Professor Steven Bellovin. I did my undergraduate studies at National University of Singapore. Please find my complete curriculum vitae here.

Publications

Conference Papers

Nathaniel Boggs, Hang Zhao, Senyao Du (Peter), and Salvatore J. Stolfo. Synthetic Data Generation and Defense in Depth Measurement of Web Applications. In the 17th International Symposium on Research in Attacks, Intrusions and Defenses (RAID 2014), Sweden, September 2014. [bibtex] [pdf]

Mariana Raykova, Hang Zhao, and Steven M Bellovin. Privacy Enhanced Access Control for Outsourced Data Sharing. In Financial Cryptography and Data Security (FC 2012), Bonaire, February 2012. A version is available as Technical Report CUCS-039-11, Department of Computer Science, Columbia University, September 2011. [bibtex] [pdf]

Hang Zhao, Jorge Lobo, Arnab Roy, and Steven M Bellovin. Policy Refinement of Network Services for MANETs. In the 12th IFIP/IEEE International Symposium on Integrated Network Management (IM 2011), Dublin, Ireland, May 2011. [bibtex] [pdf]

Hang Zhao and Steven M. Bellovin. High performance firewalls in MANETs. In International Conference on Mobile Ad-hoc and Sensor Networks, Hangzhou, China, December 2010. IEEE Computer Society. [bibtex] [pdf]

Hang Zhao, Jorge Lobo, and Steven M. Bellovin. An Algebra for Integration and Analysis of Ponder2 Policies. In Proceeding of the 9th IEEE Workshop on Policies for Distributed Systems and Networks, June 2008. [bibtex] [pdf]

Venkatesh Obanaik, Hang Zhao and Akkihebbal L. Ananda. Decoupling Loss Differentiation and Loss Recovery to Ensure Security and Performance. In Proceeding of the the IEEE Conference on Local Computer Networks, November 2004. [bibtex] [pdf]

Workshop Paper

Hang Zhao, Chi-Kin Chau, and Steven M. Bellovin. ROFL: Routing as the Firewall Layer. In New Security Paradigms Workshop, September 2008. A version is available as Technical Report CUCS-026-08. [bibtex] [pdf]

Technical Reports

Hang Zhao, Maritza Johnson, Chi-Kin Chau and Steven M. Bellovin. Source Prefix Filtering in ROFL. Technical Report CUCS-033-09, Department of Computer Science, Columbia University, July 2009. Also presented at the Annual Conference of the ITA, September 2009. [bibtex] [pdf]

Hang Zhao and Steven M. Bellovin. Policy Algebras for Hybrid Firewalls. Technical Report CUCS-017-07, Department of Computer Science, Columbia University, March 2007. Also presented at the Annual Conference of the ITA, September 2007. [bibtex] [pdf]

Dissertation

Security Policy Definition and Enforcement in Distributed Systems. [pdf]

Teaching

Course I taught

COMS W4187 Security Architecture and Engineering.

Courses I TAed

COMS W4187 Security Architecture and Engineering (Columbia Univ.),
CS312 Principles of Programming Languages (College of William & Mary),
CS141 Introduction to Computer Science Using Java (W&M),
CS131 Concepts of Computer Science (W&M),
CS2105 Computer Networks (NUS).

Internship

Research Intern at IBM T.J. Watson Research Center, with Policy Lifecycle Technologies Group, Hawthorne, NY, Summer 2007, 2010.