SECURITY & PRIVACY RESEARCH

Norrathep (Oak)
Rattanavipanon

I’m interested in various aspects of security and privacy, with a focus on computing systems.

Assistant Professor · College of Computing
Prince of Songkla University, Phuket, Thailand
Norrathep (Oak) Rattanavipanon at the NDSS Symposium

01 / ABOUT

About Me

I’m an Assistant Professor in the College of Computing at Prince of Songkla University, Phuket Campus, Thailand.

I received my Ph.D. in Computer Science from the University of California, Irvine, advised by Prof. Gene Tsudik in the Sprout Lab.

Activities, grants & awardsGrants, activities & recognition

Research Grants

(PI) SCALE: Secure Collaborative Architectures for Learning at the Edge, Fundamental Fund 2570, ฿500,000

(PI) Pick no poison: On the poisoning attacks in IoT-based federated applications, PMU-B, ฿281,580, 2024

(PI) Beware of Quantum Threat: Detection of Vulnerable Software Binaries in Quantum World (การตรวจจับซอฟต์แวร์ไบนารีที่เสี่ยงต่อการถูกโจมตีด้วยควอนตัมคอมพิวเตอร์), Fundamental Fund 2567, ฿599,060, 2023-2024

(PI) Securing Remote Attestation Against Time-of-Check Time-of-Use (TOCTOU) Attacks in Embedded/IoT Devices (การป้องกันปัญหา TOCTOU ในระบบการยืนยันระยะไกลของอุปกรณ์ฝังตัว), Young Research Grant (ทุนนักวิจัยใหม่ ว.ท.), ฿250,000, 2020-2021

(Co-Researcher) A Tool Chain for Secured AI Hardware Accelerator Design, Anusandhan National Research Foundation (ANRF), 3,077,456 INR, 2025-2026

(Co-Researcher) Artificial Intelligence Powered Comprehensive Cyber-Security for Smart Healthcare Systems (AIPOSH), ASEAN IVO (NICT, Japan), $80,000, 2023-2025

(Co-Researcher) ASEAN-Wide Cyber-Security Research Testbed, ASEAN IVO (NICT, Japan), $80,000, 2020-2022

Professional Activities

Talks & workshops

  • Secure Remote ML Inference: A System’s Perspective, CAREER@SCB, 2026
  • Remotely Verifiable Software Integrity in IoT Devices and Its Application to ML Security, IIT Guwahati, 2026
  • Lectures in Differential Privacy and Confidential Computing for Privacy-Preserving Machine Learning Systems, VISTEC, 2025
  • Poisoning Attacks in IoT Federated Learning: A System-Level Approach, CMKL, 2025
  • Security and Privacy in the Digital World from a Researcher’s Perspective, Faculty of Management Sciences, Phuket Rajabhat University, 2025
  • Secure Runtime Auditing in Remote Embedded/IoT Devices, ZISC Seminar, ETH Zurich, 2024
  • Introduction to Trusted Computing, Eurecom, 2024
  • Remotely Verifiable Software Integrity in IoT Devices: From Attestation to Poisoning Prevention, Eurecom, 2024
  • System-level Poisoning Prevention in Federated Learning, Symposium on Secure and Scalable Machine Learning, VISTEC, 2024
  • System-level Approach to Mitigating Poisoning Attacks in Edge Data Collection, NTU, Singapore, 2024
  • Secure Runtime Auditing & Guaranteed Device Healing in Low-end IoT Devices, AISC, 2024
  • On the Trust Issues in Remote Resource-constrained IoT Devices, LQDTU, Vietnam, 2023
  • Establishing Trust in Resource-constrained IoT Devices, The 2nd International Research Workshop in Computer Science and Information Systems, 2022
  • LAN Security Monitoring Device Workshop, WUNCA, 2021
  • On the TOCTOU Problem in Remote Attestation, Thailand National Cyber Week, 2021
  • Verifying Hardware/Software Co-Design for Remote Attestation in IoT, ASEAN IVO Forum, 2020

Program committees & journal reviewing

  • USENIX Security 2026
  • CCS 2023-2025
  • NDSS 2022-2024, 2026
  • AISC 2023, 2026
  • Journal Reviewer: IEEE TDSC, ACM TECS, ACM CSUR, JCS, JSS, COSE, SCN, IEEE S&P(Mag), JESTECH, IEEE JETCAS, ECTI-CIT

Internship Experience

  • Security Research Intern, SRI International, Spring and Summer 2018
  • Research Intern, Telefonica, Summer 2017
  • Software Development Engineer, Amazon, Summer 2014

Awards

  • HardaBLE: Best Full Paper Runner-Up, ACM WiSec, 2026
  • National Dissertation Award, Thailand, 2020
  • UCI Graduate Dean’s Dissertation, 2019.
  • Certification of Completion: Summer School on Formal Techniques, 2018.
  • UCI ICS Travel Award: 2020, 2019, 2017.
  • Student Travel Grants: IEEE ICDCS 2019, IEEE HOST 2018, IEEE DSN 2017.

02 / RESEARCH

Research areas

01

Embedded Security

Security mechanisms for embedded and IoT devices.

02

ML Security & Privacy

Identifying and mitigating security and privacy risks in machine learning systems.

03

Software Security

Automated and semi-automated binary analysis and patching of vulnerable software.

03 / PUBLICATIONS

Selected publications

10 selected publications

04 / FOR STUDENTS

Student opportunities

I am looking for undergraduate and graduate students with a strong background in security and privacy. Contact me by email if you are interested in working on a related research project. See my current and former students’ research projects below.

Email about research opportunities

Before contacting me

  1. 01

    Identify a research area you would like to work on.

  2. 02

    Read a related paper and prepare any questions.

  3. 03

    Email a brief introduction, your academic background, and your research interests.

Current students

5 students
  • Tinnakit Udsa

    Ph.D. (co-supervision with Prof. Sarana Nutanong at VISTEC), 2024–present

    Memorization in Machine Learning

  • Amarin Laohajirapan

    M.Sc., 2024–present

    Security in Real-time Embedded Systems

  • Raned Chuphueak

    M.Sc., 2024–present

    Provable Execution in Zephyr RTOS

  • Kamolchanok Saengtong

    B.Eng. (summer research intern, senior project), 2025–2027

    Privacy-preserving Federated Learning, Honeypot (the PSU Future Tech Challenge 2026 1st Runner-Up, NSC 2026 Finalist, TICTA 2026 1st Runner-Up)

  • Tanida Sangkasanya

    B.Eng. (senior project), 2026–2027

    Aimbot Evaluation

Former students

6 students
  • Mohamed Khalil Kiri

    Engineering Degree (internship from EURECOM), 2025–2026

    Secure ML Inference on Low-end Devices

  • Laxmi

    B.Eng. (senior project), 2024–2025

    Trusted Execution Environment in BLE

  • Suttipon Rattana

    B.Eng. (senior project), 2024–2025

    Remote Attestation using BLE

  • Aye Min Khant

    B.Eng. (summer research intern), 2025

    Hardware Accelerators in Machine Learning

  • Chissanupong Jiamsuchon

    B.Eng. (senior project), 2021–2022

    Adversarial Examples; currently at ATA IT Limited

  • Athittaya Saeloh

    B.Eng. (senior project), 2021–2022

    Provable Execution in Commercial Embedded Devices (eventually led to an IEEE TIFS paper); currently at Incognito Lab

05 / CONTACT

Contact

For research collaborations and student inquiries.

EMAIL
ADDRESS

College of Computing, Prince of Songkla University
80 Vichitsongkram Road, Kathu
Phuket 83120, Thailand