Shaofei Li 李少飞

Hi, I’m Shaofei Li. I’m currently a 4th-year Ph.D. student in the Department of Computer Science at Peking University, advised by Prof. Ding Li, Prof. Yao Guo and Prof. Xiangqun Chen. I earned my B.S. degree from the School of Electronics Engineering and Computer Science (EECS) at Peking University in 2021. I’m now a visiting PhD student at the School of Computer in National University of Singapore, advised by Prof. Zhenkai Liang.

My research interests include cybersecurity, system security and AI security. My research focuses on developing detection and defense mechanisms for various security threats in the real world systems. I have published several papers in top-tier security conferences and transactions such as S&P, NDSS, CCS and TOSEM.

In my spare time, I enjoy playing basketball, badminton and cycling. I’m a member of the men’s basketball teams and badmiton teams for the CS departments at Peking University. And I have been a member of the Cycling Association of Peking University(CAPU) since 2018. I participated in the summer expedition practice group’s long-distance cycling of more than 2,000km from Jiayuguan to Chengdu [video].

Research Interests

  1. Cybersecurity: Advanced Persistent Threats Detection [CCS’23, NDSS’24]
  2. Security for AI System: Black-box Attack Detection [S&P’25]
  3. Software Security: Control Flow Analysis [TOSEM’23]

Selected Publications

  • [S&P’25] Shaofei Li, Ziqi Zhang, Haomin Jia, Yao Guo, Xiangqun Chen, Ding Li. “Query Provenance Analysis: Efficient and Robust Defense against Query-based Black-box Attacks”. (CCF-A, Acceptance rate of cycle 1: 106/739=14.3%) [paper] [code]

  • [NDSS’24] Shaofei Li, Feng Dong, Ding Li, Xusheng Xiao, Haoyu Wang, Fei Shao, Jiedong Chen, Yao Guo, Xiangqun Chen. ”NODLINK: An Online System for Fine-Grained APT Attack Detection and Investigation”. (CCF-A, Acceptance rate: 140/694=20.2%)[paper] [code] [slides]

Other Publications

  • [TOSEM’25] Junlin Liu, Mengyu Yao, Shaofei Li, Dingyu Yang, Zheshun Wu, Xiaojun Qu, Ziqi Zhang, Ding Li, Yao Guo, Xiangqun Chen. “Not All Exceptions Are Created Equal: Triaging Error Logs in Real World Enterprises” (CCF-A)

  • [NDSS’25W] Anis Yusof, Shaofei Li, Kawatra Arshdeep Singh, Ding Li, Ee-Chien Chang, Zhenkai Liang. “From Observations to Insights: Constructing Effective Cyberattack Provenance with PROVCON”. [code]

  • [CCS’23] Feng Dong, Shaofei Li, Peng Jiang, Ding Li, Haoyu Wang, Liangyi Huang, Xusheng Xiao, Jiedong Chen, Xiapu Luo, Yao Guo, Xiangqun Chen. “Are we there yet? An Industrial Viewpoint on Provenance-based Endpoint Detection and Response Tools.” (CCF-A, Acceptance rate: 158/795=19.9%) [paper]

  • [TOSEM’23] Xuanzhe Liu, Chengxu Yang, Ding Li, Yuhan Zhou, Shaofei Li, Jiali Chen, Zhenpeng Chen ”Adonis: Practical Control Flow Recovery through OS-Level Traces.” (CCF-A) [paper] [code]

Invited Talks & Presentations

  • West Lake Forum on Cyberspace Security, Hangzhou, China, January, 2025. Query Provenance Analysis: Efficient and Robust Defense against Query-based Black-box Attacks. (Best Poster Presentation Nomination)

  • Shanghai Jiao Tong University 2024 International Young Scholars Forum - Cyberspace Security Forum, December, 2024. Provenance-based System Security Protection.

Academic Services

Reviewers: TDSC’25, TIFS’24, TNNLS’24

Internship Experience

Meituan, Beijing, China (Jun, 2024, – Sep, 2024)

ByteDance, Beijing, China (Jul, 2020 – Nov, 2020)

Teaching Experience

Teaching Assistant, Frontier of System Software Research, PKU Spring 2024

Teaching Assistant, Frontier of System Software Research, PKU Spring 2023

Teaching Assistant, Operating System, PKU Spring 2022

Teaching Assistant, Introduction to Computing, PKU Fall 2021