Research

Publications

Papers, posters, and other work: what they establish and why they matter.

2026

The Case of the Missing Cases: Inferring Sealed U.S. Federal Cases

Ye Shu, Elisa Luo, Paul Chung, Geoffrey M. Voelker, Stefan Savage

ACM Internet Measurement Conference, 2026.

TL;DR

We develop and validate inference techniques for measuring current and historical U.S. federal court case sealing practices.

Why It Matters

The techniques make scaled investigations of a secretive judicial process possible with free data and reveal previously hidden patterns with civil and magistrate judge cases.

Lost in Translation: Text Message Spoofing via Email

Sumanth Rao, Ye Shu, Stefan Savage, Aaron Schulman, Geoffrey M. Voelker, Enze Liu

IEEE Symposium on Security and Privacy, 2026. Distinguished Paper Award

TL;DR

We show how email-to-text gateways and messaging apps enable spoofing of arbitrary senders and injection of forged messages into existing conversations.

Why It Matters

The attacks expose an end-to-end identity failure that emerges when independently designed messaging protocols and systems are connected together.

2025

Poster: When Blocks Go Missing: The Timeliness and Trustworthiness of Blockchain RPC Providers

Ye Shu, Deian Stefan, Stefan Savage, Geoffrey M. Voelker, Enze Alex Liu

ACM Internet Measurement Conference (Poster), 2025.

TL;DR

We measure blockchain RPC providers and found substantial differences in timeliness, missing records, and even internal inconsistency.

Why It Matters

Applications implicitly trust RPC providers as faithful representations of the chain state; our measurements challenge that assumption.

2024

RESTAssured: Formally Verifying RESTful API Specification Conformance in Web Applications

Ye Shu

Williams College undergraduate honors thesis, 2024. Highest Honors and Sam Goldberg Colloquium Prize

TL;DR

RESTAssured uses symbolic execution to verify whether Express.js servers conform to their OpenAPI specifications.

Why It Matters

It makes API specifications mechanically checkable against actual implementations, catching discrepancies that would otherwise be missed by traditional testing and fuzzing techniques.

SureVeyor: A Language for High-Quality Online Surveys

Ye Shu, Emmie Hine, Hugo Hua, Emery Berger, Daniel Barowy

PLATEAU Workshop, 2024.

TL;DR

SureVeyor is a domain-specific language for expressing online surveys with controls for survey-design confounds and automatic detection of low-quality responses.

Why It Matters

It tackles two major sources of noise in online surveys with built-in language features.

2018

Binary Reed-Solomon Coding Based Distributed Storage Scheme in Information-Centric Fog Networks

Ye Shu, Mianxiong Dong, Kaoru Ota, Jun Wu, Siyi Liao

IEEE CAMAD Workshop, 2018.