Researcher profile

Lixia Zhang

Lixia Zhang contributes to research discovery and scholarly infrastructure.

ResearcherAffiliation not importedOpen to collaborate

Trust snapshot

Quick read

Trust 21 - EmergingVerification L1Unclaimed author
12works
0followers
6topics
4close collaborators

Actions

Decide how to stay connected

Follow researcher0

Identity and collaboration

How to connect with this researcher

Claiming links this public author record to a researcher profile and unlocks direct collaboration workflows.

Log in to claim

Direct collaboration

Open a focused conversation when the fit is right

Claim this author entity first to unlock direct invitations.

Research graph

See the researcher in context

Open full explorer

Inspect adjacent work, topics, institutions and collaborators without jumping out to a separate graph page.

Building this graph slice

BZPEER is loading the nearby papers, people, topics and institutions for this page.

Published work

12 published item(s)

preprint2025arXiv

SRM at 30: Lessons from Early Data-Centric Networking and Their Impact on Named Data Networking

A 1995 SIGCOMM paper, "A Reliable Multicast Framework for Light-weight Sessions and Application-Level Framing", commonly known as SRM, explored a fundamentally new approach to reliable multiparty data delivery. Rather than adapting established sender-driven reliable unicast mechanisms to multicast, as most contemporaneous proposals did, SRM introduced a data-centric model in which data receivers recover losses by explicitly requesting missing data. Thirty years later, we revisit the SRM framework, examining the challenges it faced, the lessons learned, and its influence on the later development of Named Data Networking (NDN). Experimentations with SRM revealed a fundamental semantic mismatch between its data-centric framework and IP's address-based delivery; while the application layer named data, the network layer remained 'blind' to those names, resulting in inefficient loss recovery. NDN resolves this architectural friction by aligning network delivery with the data-retrieval model and by securing data directly rather than securing communication channels. This retrospective highlights how early insights from SRM informed key design decisions in NDN and illustrates how NDN's design emerged from the cumulative insights gained over decades of networking research and development.

preprint2022arXiv

Coiling of cellular protrusions around extracellular fibers

Protrusions at the leading-edge of a cell play an important role in sensing the extracellular cues, during cellular spreading and motility. Recent studies provided indications that these protrusions wrap (coil) around the extra-cellular fibers. The details of this coiling process, and the mechanisms that drive it, are not well understood. We present a combined theoretical and experimental study of the coiling of cellular protrusions on fibers of different geometry. Our theoretical model describes membrane protrusions that are produced by curved membrane proteins that recruit the protrusive forces of actin polymerization, and identifies the role of bending and adhesion energies in orienting the leading-edges of the protrusions along the azimuthal (coiling) direction. Our model predicts that the cell's leading-edge coils on round fibers, but the coiling ceases for a fiber of elliptical (flat) cross-section. These predictions are verified by 3D visualization and quantitation of coiling on suspended fibers using Dual-View light-sheet microscopy (diSPIM). Overall, we provide a theoretical framework supported by high spatiotemporal resolution experiments capable of resolving coiling of cellular protrusions around extracellular fibers of varying diameters.

preprint2021arXiv

Sovereign: User-Controlled Smart Homes

Recent years have witnessed the rapid deployment of smart homes; most of them are controlled by remote servers in the cloud. Such designs raise security and privacy concerns for end users. In this paper, we describe the design of Sovereign, a home IoT system framework that provides end users complete control of their home IoT systems. Sovereign lets home IoT devices and applications communicate via application-named data and secures data directly. This enables direct, secure, one-to-one and one-to-many device-to-device communication over wireless broadcast media. Sovereign utilizes semantic names to construct usable security solutions. We implement Sovereign as a publish-subscribe-based development platform together with a prototype home IoT controller. Our preliminary evaluation shows that Sovereign provides a systematic, easy-to-use solution to user-controlled, self-contained smart homes running on existing IoT hardware without imposing noticeable overhead.

preprint2021arXiv

Supporting Multiparty Signing over Named Data Networking

Modern digitally controlled systems require multiparty authentication and authorization to meet the desired security requirement. This paper describes the design and development of NDN-MPS, an automated solution to support multiparty signature signing and verification for NDN-enabled applications. NDN-MPS suggests several changes and extensions to the existing NDN security solutions. First, it introduces a new type of trust schema to support signing and verification for multiple signers under complex policies such as threshold schemes. Second, it extends the NDN signature format to accommodate multisignature schemes such as BLS signature. Third, it introduces a signature collection protocol to solicit signatures securely from multiple signers. We further evaluate NDN-MPS by assessing its security properties and measuring its performance.

preprint2021arXiv

The relativistic jet and its central engine of $Fermi$ blazars

Jet origination is one of the most important questions of AGN, yet it stays obscure. In this work, we made use of information of emission lines, spectral energy distributions (SEDs), \textit{Fermi}-LAT $γ$-ray emission, construct a blazar sample that contains 667 sources. We notice that jet power originations are different for BL Lacs and for FSRQs. The correlation between jet power $P_{\rm jet}$ and the normalized disk luminosity $L_{\rm Disk}/L_{\rm Edd}$ shows a slope of -1.77 for BL Lacs and a slope of 1.16 for FSRQs. The results seem to suggest that BL Lac jets are powered by extracting blackhole rotation energy, while FSRQ jets are mostly powered by accretion disks. Meanwhile, we find the accretion ratio $\dot{M} / \dot{M}_{\rm Edd}$ increase with the normalized $γ$-ray luminosity. Base on this, we propose a dividing line, ${\rm log} (L_{\rm BLR}/L_{\rm Edd}) = 0.25 \ {\rm log} (L_{\rm γ}/L_{\rm Edd}) - 2.23$, to separate FSRQs and BL Lacs in the diagram of $L_{\rm BLR}/L_{\rm Edd}$ against $L_{\rm γ}/L_{\rm Edd}$ through using the machine learning method, the method gives an accuracy of 84.5\%. In addition, we propose an empirical formula, $M_{\rm BH}/M_{\rm \odot} \simeq L_{\rm γ}^{0.65}/21.46$, to estimate blackhole mass based on a strong correlation between $γ$-ray luminosity and blackhole mass. Strong $γ$-ray emission is typical in blazars, and the emission is always boosted by a Doppler beaming effect. In this work, we generate a new method to estimate a lower-limit of Doppler factor $δ$ and give $δ_{\rm BL Lac} = 7.94$ and $δ_{\rm FSRQ} = 11.55$.

preprint2020arXiv

AuditShare: Sensitive Data Sharing with Reliable Leaker Identification

As Personally Identifiable Information (PII) data sharing among multiple parties becomes increasingly common, so does the potential for data leakage. As required by new data protection regulations and laws, when PII leakage occurs, one must be able to reliably identify the leaking sources. Existing solutions utilize watermark technologies or data object allocation strategies to differentiate the data shared with different parties to identify potential leakers. However, these solutions lose their effectiveness under several attack scenarios, e.g., a data sender may leak the data and a receiver may deny the reception of certain shared data. Worse yet, multiple receivers might collude and apply a set of operations such as intersection, complement, and union to their received datasets before leaking them, making the task of leaker identification even more difficult. In this paper, we propose AuditShare, a PII dataset sharing system with reliable leaking source identification. Firstly, taking advantage of the intrinsic properties of PII data, AuditShare allocates data objects to individual sharing parties by PII attributes. Secondly, AuditShare obliviously transfers data between the sender and each receiver and uses a Merkle Tree as an immutable record of the sharing. Thirdly, a knowledge-based identification algorithm is proposed to identify a guilty sender or colluding/non-colluding receivers. Through our evaluation, we show that: (i) With a modest amount of leaked data, AuditShare can accurately (accuracy>99.99%) and undeniably identify all the guilty parties in different cases; (ii) It only takes 0.5 second to share 100,000 data objects in AuditShare, which is practical in real-world deployment.

preprint2020arXiv

Comparison between $Fermi$ Detected and non-$Fermi$ Detected Superluminal Sources

Active galactic nuclei (AGNs) have been attracting research attention due to their special observable properties. Specifically, a majority of AGNs are detected by Fermi-LAT missions, but not by Fermi-LAT, which raises the question of whether any differences exist between the two. To answer this issue, we compile a sample of 291 superluminal AGNs (189 FDSs and 102 non-FDSs) from available multi-wavelength radio, optical, and X-ray (or even $γ$-ray) data and Doppler factors and proper motion ($μ$) (or apparent velocity ($β_{\rm{app}}$)); calculated the apparent velocity from their proper motion, Lorentz factor ($Γ$), viewing angle ($ϕ$) and co-moving viewing angle ($ϕ_{co}$) for the sources with available Doppler factor ($δ$); and performed some statistical analyses for both types. Our study indicated that1. In terms of average values, FDSs have higher proper motions ($μ$), apparent velocities ($β_{\rm app}$), Doppler factor ($δ$), Lorentz factor ($Γ$), and smaller viewing angle ($ϕ$). Nevertheless, there is no clear difference in co-moving viewing angles ($ϕ_{\rm co}$).

preprint2020arXiv

DAPES: Named Data for Off-the-Grid File Sharing with Peer-to-Peer Interactions

This paper introduces DAta-centric Peer-to-peer filE Sharing (DAPES), a data sharing protocol for scenarios with intermittent connectivity and user mobility. DAPES provides a set of semantically meaningful hierarchical naming abstractions that facilitate the exchange of file collections via local connectivity. This enables peers to "make the most" out of the limited connection time with other peers by maximizing the utility of individual transmissions to provide data missing by most connected peers. DAPES runs on top of Named-Data Networking (NDN) and extends NDN's data-centric network layer abstractions to achieve communication over multiple wireless hops through an adaptive hop-by-hop forwarding/suppression mechanism. We have evaluated DAPES through real-world experiments in an outdoor campus setting and extensive simulations. Our results demonstrate that DAPES achieves 50-71% lower overheads and 15-33% lower file sharing delays compared to file sharing solutions that rely on IP-based mobile ad-hoc routing.

preprint2020arXiv

On Certificate Management in Named Data Networking

Named Data Networking (NDN) secures network communications by requiring all data packets to be signed when produced. This requirement necessitates efficient and usable mechanisms to handle NDN certificate issuance and revocation, making these supporting mechanisms essential for NDN operations. In this paper, we first investigate and clarify core concepts related to NDN certificates and security design in general, and then present the model of NDN certificate management and its desired properties. We proceed with the design of a specific realization of NDN's certificate management, NDNCERT, evaluate it using a formal security analysis, and discuss the challenges in designing, implementing, and deploying the system, to share our experiences with other NDN security protocol development efforts.

preprint2020arXiv

The Paradox of Information Access: Growing Isolation in the Age of Sharing

Modern online media, such as Twitter, Instagram, and YouTube, enable anyone to become an information producer and to offer online content for potentially global consumption. By increasing the amount of globally accessible real-time information, today's ubiquitous producers contribute to a world, where an individual consumes vanishingly smaller fractions of all produced content. In general, consumers preferentially select information that closely matches their individual views and values. The bias inherent in such selection is further magnified by today's information curation services that maximize user engagement (and thus service revenue) by filtering new content in accordance with observed consumer preferences. Consequently, individuals get exposed to increasingly narrower bands of the ideology spectrum. Societies get fragmented into increasingly ideologically isolated enclaves. These enclaves (or echo-chambers) then become vulnerable to misinformation spread, which in turn further magnifies polarization and bias. We call this dynamic the paradox of information access; a growing ideological fragmentation in the age of sharing. This article describes the technical, economic, and socio-cognitive contributors to this paradox, and explores research directions towards its mitigation.

preprint2013arXiv

Vehicular Inter-Networking via Named Data

In this paper we apply the Named Data Networking, a newly proposed Internet architecture, to networking vehicles on the run. Our initial design, dubbed V-NDN, illustrates NDN's promising potential in providing a unifying architecture that enables networking among all computing devices independent from whether they are connected through wired infrastructure, ad hoc, or intermittent DTN. This paper describes the prototype implementation of V-NDN and its preliminary performance assessment.

preprint2012arXiv

DoS and DDoS in Named-Data Networking

With the growing realization that current Internet protocols are reaching the limits of their senescence, a number of on-going research efforts aim to design potential next-generation Internet architectures. Although they vary in maturity and scope, in order to avoid past pitfalls, these efforts seek to treat security and privacy as fundamental requirements. Resilience to Denial-of-Service (DoS) attacks that plague today's Internet is a major issue for any new architecture and deserves full attention. In this paper, we focus on DoS in a specific candidate next-generation Internet architecture called Named-Data Networking (NDN) -- an instantiation of Information-Centric Networking approach. By stressing content dissemination, NDN appears to be attractive and viable approach to many types of current and emerging communication models. It also incorporates some basic security features that mitigate certain attacks. However, NDN's resilience to DoS attacks has not been analyzed to-date. This paper represents the first step towards assessment and possible mitigation of DoS in NDN. After identifying and analyzing several new types of attacks, it investigates their variations, effects and counter-measures. This paper also sheds some light on the long-standing debate about relative virtues of self-certifying, as opposed to human-readable, names.