CSF: IEEE Computer Security Foundations Symposium

FacebookTwitterLinkedInGoogle

 

Past:   Proceedings on DBLP

Future:  Post a CFP for 2026 or later   |   Invite the Organizers Email

 
 

All CFPs on WikiCFP

Event When Where Deadline
CSF 2025 38th IEEE Computer Security Foundations Symposium - deadline 2
Jun 16, 2025 - Jun 20, 2025 Santa Cruz, CA, USA Oct 1, 2024
CSF 2025 38th IEEE Computer Security Foundations Symposium - deadline 3
Jun 16, 2025 - Jun 20, 2025 Santa Cruz, CA, USA Feb 4, 2025
CSF 2023 36th IEEE Computer Security Foundations Symposium (Fall cycle)
Jul 7, 2023 - Jul 10, 2023 Dubrovnik, Croatia Sep 30, 2022
CSF 2021 IEEE Computer Security Foundations Symposium
Jun 21, 2021 - Jun 25, 2021 Dubrovnik, Croatia Oct 2, 2020
CSF 2019 32nd IEEE Computer Security Foundations Symposium
Jun 25, 2019 - Jun 28, 2019 Hoboken, NJ, USA Feb 26, 2019 (Feb 22, 2019)
CSF 2017 30th IEEE Computer Security Foundations Symposium
Aug 21, 2017 - Aug 25, 2017 Santa Barbara, CA, USA Feb 17, 2017
CSF 2016 29th IEEE Computer Security Foundations Symposium
Jun 27, 2016 - Jul 1, 2016 Lisboa, Portugal Feb 12, 2016
CSF 2015 CFP: 28th IEEE Computer Security Foundations Symposium (CSF 2015)
Jul 14, 2015 - Jul 17, 2015 Verona, Italy Feb 10, 2015
CSF 2014 27th IEEE Computer Security Foundations Symposium
Jul 19, 2014 - Jul 22, 2014 Vienna, Austria Feb 10, 2014 (Feb 3, 2014)
CSF 2012 Computer Security Foundations Symposium
Jun 25, 2012 - Jun 27, 2012 Cambridge, MA, USA Feb 9, 2012
CSF 2010 23rd Computer Security Foundations Symposium
Jul 17, 2010 - Jul 19, 2010 Edinburgh, UK Feb 8, 2010 (Feb 4, 2010)
CSF 2009 IEEE 22nd Computer Security Foundations Symposium
Jul 8, 2009 - Jul 10, 2009 Port Jefferson, NY, USA Feb 6, 2009
CSF 2008 IEEE 21st Computer Security Foundations Symposium
Jun 23, 2008 - Jun 25, 2008 Pittsburgh, PA, USA Jan 29, 2008
 
 

Present CFP : 2025

The Computer Security Foundations Symposium (CSF) is an annual conference for researchers in computer security. CSF seeks papers on foundational aspects of computer security, such as formal security models, relationships between security properties and defenses, principled techniques and tools for design and rigorous analysis of security mechanisms, as well as their application to practice. While CSF welcomes submissions beyond the topics listed below, the main focus of CSF is foundational security and privacy. Papers lacking foundational aspects risk desk rejection without further evaluation of their merits; contact the PC chairs when in doubt.

CSF was created in 1988 as a workshop of the IEEE Computer Society’s Technical Committee on Security and Privacy, in response to a 1986 essay by Don Good entitled “The Foundations of Computer Security—We Need Some.” The meeting became a “symposium” in 2007, along with a policy for open, increased attendance. Over the past two decades, many seminal papers and techniques have been presented first at CSF. For more details on the history of the symposium, visit CSF’s home.

Proceedings will be published by the IEEE Computer Society Press and will be available at the symposium. Some small number of papers will be selected by the Program Committee as "Distinguished Papers".
Topics

New results in security and privacy are welcome. We also encourage challenge/vision papers, which may describe open questions and raise fundamental concerns about security and privacy. Possible topics for all papers include, but are not limited to:

access control
accountability
anonymity
attack models
authentication
blockchains and smart contracts
cloud security
cryptography
data provenance
data and system integrity
database security
decidability and complexity
decision theory
distributed systems security
electronic voting
embedded systems security
forensics
formal methods and verification
hardware-based security
information flow control
intrusion detection
language-based security
mobile security
network security
privacy
security and privacy aspects of machine learning
security and privacy for the Internet of Things
security architecture
security metrics
security policies
security protocols
software security
socio-technical security
trust management
usable security
web security

SoK papers: Systematization of Knowledge Papers

CSF 2025 solicits systematization of knowledge (SoK) papers in foundational security and privacy research. These papers systematize, re-formulate, or evaluate existing work in one established and significant research topic. Such papers must provide new insights. Survey papers without new insights are not appropriate. Papers trying to identify robust foundations of research areas still lacking them are particularly welcome. Submissions will be distinguished by the prefix “SoK:” in the title and a checkbox on the submission form.
Ethics

We expect authors to carefully consider and address the potential harms associated with carrying out the research, as well as the potential negative consequences that could stem from publishing their work. Failure to do so will result in summary rejection of a submission regardless of its quality and scientific value.

Although causing controlled harm is sometimes a consequence of legitimate scientific research in computer security and privacy, authors are expected to document how they have addressed and mitigated the risks. This includes, but is not limited to, considering the impact of their research on deployed systems, understanding the costs and risks their research imposes on others, safely and appropriately collecting data, and following responsible disclosure. If the submitted research has the potential to cause harm, the paper should include a clear statement about why the benefit of the research outweighs the harms, and how the authors have taken measures and followed best practices to ensure safety and minimize the harms caused by their research.

If the submitted research has potential to cause harm, and authors have access to an Institutional Review Board (IRB), we expect that this IRB is consulted and its approval and recommendations are documented in the paper. We note however that IRBs are not expected to understand computer security research well or to know about best practices and community norms in our field, so IRB approval does not absolve researchers from considering ethical aspects of their work. In particular, IRB approval is not sufficient to guarantee that the PC will not have additional concerns with respect to harms associated with the research.

We encourage the authors to consult with existing documentation, e.g., Common Pitfalls in Writing about Security and Privacy Human Subjects Experiments, and How to Avoid Them or the Menlo Report and existing Safety consultation entities, e.g., the Tor Safety Research Board. These can help in thinking about potential harms, and in designing the safest experiments and disclosure processes.
 

Related Resources

Security 2025   Special Issue on Recent Advances in Security, Privacy, and Trust
CSF 2025   38th IEEE Computer Security Foundations Symposium - deadline 2
ASIACCS 2025   The 20th ACM ASIA Conference on Computer and Communications Security - deadline 2
IEEE-Ei/Scopus-ITCC 2025   2025 5th International Conference on Information Technology and Cloud Computing (ITCC 2025)-EI Compendex
ACNS 2025   23rd International Conference on Applied Cryptography and Network Security - deadline 2
IEEE-Ei/Scopus-CNIOT 2025   2025 IEEE 6th International Conference on Computing, Networks and Internet of Things (CNIOT 2025) -EI Compendex
IEEE BDAI 2025   IEEE--2025 the 8th International Conference on Big Data and Artificial Intelligence (BDAI 2025)
SPIE-Ei/Scopus-CMLDS 2025   2025 2nd International Conference on Computing, Machine Learning and Data Science (CMLDS 2025) -EI Compendex & Scopus
MSEJ 2024   Advances in Materials Science and Engineering: An International Journal