arXiv ScienceSearch

arXiv subjects

Sen Deng

Publications and source records attributed to Sen Deng.

10 recordsLinked to original sources

NetEcho: From Real-World Streaming Side-Channels to Full LLM Conversation Recovery

In the rapidly expanding landscape of Large Language Model (LLM) applications, real-time output streaming has become the dominant interaction paradigm. While this enhances user experience, recent research reveals that it exposes a non-trivial attack surface through network side-channels. Adversaries can exploit patterns in encrypted traffic to infer sensitive information and reconstruct private conversations. In response, LLM providers and third-party services are deploying defenses such as traffic padding and obfuscation to mitigate these vulnerabilities. This paper starts by presenting a systematic analysis of contemporary side-channel defenses in mainstream LLM applications, with a focus on services from vendors like OpenAI and DeepSeek. We identify and examine seven representative deployment scenarios, each incorporating active/passive mitigation techniques. Despite these enhanced security measures, our investigation uncovers significant residual information that remains vulnerable to leakage within the network traffic. Building on this discovery, we introduce NetEcho, a novel, LLM-based framework that comprehensively unleashes the network side-channel risks of today's LLM applications. NetEcho is designed to recover entire conversations -- including both user prompts and LLM responses -- directly from encrypted network traffic. It features a deliberate design that ensures high-fidelity text recovery, transferability across different deployment scenarios, and moderate operational cost. In our evaluations on medical and legal applications built upon leading models like DeepSeek-v3 and GPT-4o, NetEcho can recover avg $\sim$70\% information of each conversation, demonstrating a critical limitation in current defense mechanisms. We conclude by discussing the implications of our findings and proposing future directions for augmenting network traffic security.

cs.CR

CipherGuard: Compiler-aided Mitigation against Ciphertext Side-channel Attacks

Recently, the new ciphertext side channels resulting from the deterministic memory encryption in Trusted Execution Environments (TEEs), enable ciphertexts to manifest identifiable patterns when being sequentially written to the same memory address. Attackers with read access to encrypted memory in TEEs can potentially deduce plaintexts by analyzing these changing ciphertext patterns. In this paper, we design CipherGuard, a compiler-based mitigation tool to counteract ciphertext side channels with high efficiency and security guarantees. CipherGuard is based on the LLVM ecosystem, and encompasses multiple defense strategies, including software-assisted probabilistic encryption, secret-aware register allocation, and diversion-based obfuscation. The design of CipherGuard demonstrates that compiler techniques are highly effective for fine-grained control over mitigation code generation and assisted component management. Through a comprehensive evaluation, it demonstrates that CipherGuard can strengthen the security of various cryptographic implementations more efficiently than existing state-of-the-art defense, i.e., CipherFix. In its most efficient strategy, CipherGuard incurs an average performance overhead of only 1.41X, with a maximum of 1.95X.

cs.CR

The physics case for neutrino-neutrino collisions

Addressing the mass origin and properties of neutrinos is of strong interest to particle physics, baryogenesis and cosmology. Popular explanations involve physics beyond the standard model, for example, the dimension-5 Weinberg operator or heavy Majorana neutrinos arising from ``seesaw'' models. The current best direct limits on the electron neutrino mass, derived from nuclei beta decay or neutrinoless double beta decay processes, are at the sub-electronvolt level. Here we propose a novel neutrino neutrino collider where the neutrino beam is generated from TeV scale muon decays. Such collisions can happen between either neutrinos and anti-neutrinos, or neutrinos and neutrinos. We find that with a tiny integrated luminosity of about $10^{-5}$/fb we can already expect to observe direct neutrino anti-neutrino annihilation, $\nu\bar{\nu}\rightarrow {\rm Z}$, which also opens the door to explore neutrino related resonances $\nu\bar{\nu}\rightarrow {\rm X}$. The low luminosity requirement can accommodate a relatively large emittance muon beam. Such a device would also allow for probing heavy Majorana neutrino and effective Majorana neutrino mass through $\nu\nu\rightarrow {\rm H H}$ to a competitive level, for both electron and muon types.

hep-ph

The physics case for a neutrino lepton collider in light of the CDF W mass measurement

We propose a neutrino lepton collider where the neutrino beam is generated from TeV scale muon decays. Such a device would allow for a precise measurement of the W mass based on single W production: nu l to W. Although it is challenging to achieve high instantaneous luminosity with such a collider, we find that a total luminosity of 0.1/fb can already yield competitive physics results. In addition to a W mass measurement, a rich variety of physics goals could be achieved with such a collider, including W boson precision measurements, heavy leptophilic gauge boson searches, and anomalous Znunu coupling searches. A neutrino lepton collider is both a novel idea in itself, and may also be a useful intermediate step, with less muon cooling required, towards the muon-muon collider already being pursued by the energy frontier community. A neutrino neutrino or neutrino proton collider may also be interesting future options for the high energy frontier.

hep-ph

Detail-recovery Image Deraining via Dual Sample-augmented Contrastive Learning

The intricacy of rainy image contents often leads cutting-edge deraining models to image degradation including remnant rain, wrongly-removed details, and distorted appearance. Such degradation is further exacerbated when applying the models trained on synthetic data to real-world rainy images. We observe two types of domain gaps between synthetic and real-world rainy images: one exists in rain streak patterns; the other is the pixel-level appearance of rain-free images. To bridge the two domain gaps, we propose a semi-supervised detail-recovery image deraining network (Semi-DRDNet) with dual sample-augmented contrastive learning. Semi-DRDNet consists of three sub-networks:i) for removing rain streaks without remnants, we present a squeeze-and-excitation based rain residual network; ii) for encouraging the lost details to return, we construct a structure detail context aggregation based detail repair network; to our knowledge, this is the first time; and iii) for building efficient contrastive constraints for both rain streaks and clean backgrounds, we exploit a novel dual sample-augmented contrastive regularization network.Semi-DRDNet operates smoothly on both synthetic and real-world rainy data in terms of deraining robustness and detail accuracy. Comparisons on four datasets including our established Real200 show clear improvements of Semi-DRDNet over fifteen state-of-the-art methods. Code and dataset are available at https://github.com/syy-whu/DRD-Net.

cs.CV

Boosted tau lepton as a microscope and macroscope

Anomalies from the LHCb lepton flavour universality and Fermilab muon anomalous magnetic momentum, show tantalizing hints of possible new physics from the lepton sectors. Due to its large mass and shorter lifetime than muon, the tau lepton is believed to couple more to possible new physics beyond the standard model. Traditionally, tau leptons are probed through the decay products due to tau's short life time. On the other hand, at a high energy scale, a large fraction of tau leptons could be boosted to a much longer life time and fly a visible distance from several centimetres up to kilometer length scale, yet very informative to new physics beyond the standard model or high energy cosmic rays. In this article, we show unique yet promising tau physics by exploiting long-lived taus as a microscope or macroscope, to measure tau's anomalous magnetic momentum to an unprecedented level of accuracy and detect high energy cosmic neutrinos at the 1 TeV to 1 PeV scale, respectively.

hep-ph

Direction-aware Feature-level Frequency Decomposition for Single Image Deraining

We present a novel direction-aware feature-level frequency decomposition network for single image deraining. Compared with existing solutions, the proposed network has three compelling characteristics. First, unlike previous algorithms, we propose to perform frequency decomposition at feature-level instead of image-level, allowing both low-frequency maps containing structures and high-frequency maps containing details to be continuously refined during the training procedure. Second, we further establish communication channels between low-frequency maps and high-frequency maps to interactively capture structures from high-frequency maps and add them back to low-frequency maps and, simultaneously, extract details from low-frequency maps and send them back to high-frequency maps, thereby removing rain streaks while preserving more delicate features in the input image. Third, different from existing algorithms using convolutional filters consistent in all directions, we propose a direction-aware filter to capture the direction of rain streaks in order to more effectively and thoroughly purge the input images of rain streaks. We extensively evaluate the proposed approach in three representative datasets and experimental results corroborate our approach consistently outperforms state-of-the-art deraining algorithms.

cs.CV

MBA-RainGAN: Multi-branch Attention Generative Adversarial Network for Mixture of Rain Removal from Single Images

Rain severely hampers the visibility of scene objects when images are captured through glass in heavily rainy days. We observe three intriguing phenomenons that, 1) rain is a mixture of raindrops, rain streaks and rainy haze; 2) the depth from the camera determines the degrees of object visibility, where objects nearby and faraway are visually blocked by rain streaks and rainy haze, respectively; and 3) raindrops on the glass randomly affect the object visibility of the whole image space. We for the first time consider that, the overall visibility of objects is determined by the mixture of rain (MOR). However, existing solutions and established datasets lack full consideration of the MOR. In this work, we first formulate a new rain imaging model; by then, we enrich the popular RainCityscapes by considering raindrops, named RainCityscapes++. Furthermore, we propose a multi-branch attention generative adversarial network (termed an MBA-RainGAN) to fully remove the MOR. The experiment shows clear visual and numerical improvements of our approach over the state-of-the-arts on RainCityscapes++. The code and dataset will be available.

cs.CV

DRD-Net: Detail-recovery Image Deraining via Context Aggregation Networks

Image deraining is a fundamental, yet not well-solved problem in computer vision and graphics. The traditional image deraining approaches commonly behave ineffectively in medium and heavy rain removal, while the learning-based ones lead to image degradations such as the loss of image details, halo artifacts and/or color distortion. Unlike existing image deraining approaches that lack the detail-recovery mechanism, we propose an end-to-end detail-recovery image deraining network (termed a DRD-Net) for single images. We for the first time introduce two sub-networks with a comprehensive loss function which synergize to derain and recover the lost details caused by deraining. We have three key contributions. First, we present a rain residual network to remove rain streaks from the rainy images, which combines the squeeze-and-excitation (SE) operation with residual blocks to make full advantage of spatial contextual information. Second, we design a new connection style block, named structure detail context aggregation block (SDCAB), which aggregates context feature information and has a large reception field. Third, benefiting from the SDCAB, we construct a detail repair network to encourage the lost details to return for eliminating image degradations. We have validated our approach on four recognized datasets (three synthetic and one real-world). Both quantitative and qualitative comparisons show that our approach outperforms the state-of-the-art deraining methods in terms of the deraining robustness and detail accuracy. The source code has been available for public evaluation and use on GitHub.

eess.IV

Convolutional Neural Network with Median Layers for Denoising Salt-and-Pepper Contaminations

We propose a deep fully convolutional neural network with a new type of layer, named median layer, to restore images contaminated by the salt-and-pepper (s&p) noise. A median layer simply performs median filtering on all feature channels. By adding this kind of layer into some widely used fully convolutional deep neural networks, we develop an end-to-end network that removes the extremely high-level s&p noise without performing any non-trivial preprocessing tasks, which is different from all the existing literature in s&p noise removal. Experiments show that inserting median layers into a simple fully-convolutional network with the L2 loss significantly boosts the signal-to-noise ratio. Quantitative comparisons testify that our network outperforms the state-of-the-art methods with a limited amount of training data. The source code has been released for public evaluation and use (https://github.com/llmpass/medianDenoise).

cs.CV