Install any skill in seconds. Free to start, no credit card required.
Get Started Free →Use when deciding whether a security project fits ACM CCS versus IEEE S&P, USENIX Security, NDSS, PETS, or a crypto/theory venue, identifying the security contribution type, and sharpening the threat model and attacker capability before writing begins.
| Test case | Without → With | Effect | Δ tokens | Δ turns |
|---|---|---|---|---|
| case-04 | ✗→✓ | ▲ Improved | -34% | 0% |
| case-05 | ✗→✓ | ▲ Improved | -11% | 0% |
| case-06 | ✗→✓ | ▲ Improved | -35% | 0% |
| case-07 | ✗→✓ | ▲ Improved | -10% | 0% |
| case-08 | ✗→✓ | ▲ Improved | -1% | 0% |
Use this before writing. ACM CCS is the SIGSAC flagship: it rewards work with a concrete attacker, a defensible threat model, and evidence that survives an adversarial program committee. Decide venue by community and contribution type, never by prestige ranking.
a defense with measured cost, an applied-cryptography protocol, a systems or web-security mechanism, or a measurement study — aimed at the cross-area SIGSAC community.
systematization framing and the November cycle fits your calendar better.
evidence lives in a runnable tool and open benchmark.
routing, malware infrastructure).
its deployment, is the result.
| Signal in the project | CCS reading | |---|---| | New attack with a clearly bounded adversary and demonstrated impact | Core fit — the house genre | | Defense evaluated against adaptive attacks with deployment cost | Core fit | | Applied crypto protocol with implementation and measured overhead | Core fit | | Internet-scale or ecosystem measurement with validated sampling | Core fit | | Pure cryptographic hardness proof, no system | CRYPTO/EUROCRYPT or a theory venue | | Privacy-first metrics with no other security property | PETS/PoPETs |
A project extracts keys from a deployed TLS library via a microarchitectural side channel, with a proof-of-concept exploit and a constant-time patch. CCS reading: strong fit — a concrete attacker, measured leakage, and a defense with overhead numbers is exactly the CCS arc. Strip the exploit and keep only an abstract leakage bound, and it drifts toward a crypto theory venue; expand the network-measurement of vulnerable hosts into the whole story, and NDSS becomes plausible; foreground only the privacy harm to users, and PETS fits better.
write the threat model in three sentences, the contribution is not yet CCS-shaped.
because reviewers grade each against a different evidence bar.
needing 30 pages of proofs may belong at a journal or a theory venue.
final routing.
text[Fit] strong CCS / possible CCS / better elsewhere [Best venue] CCS / IEEE S&P / USENIX Security / NDSS / PETS / crypto venue / other [Contribution type] attack / defense / protocol / measurement / tool / study [Threat model in one line] <adversary capability and goal> [Top rejection risk] <threat-model / novelty / evidence / ethics / scope> [Next action] <sharpen threat model, add evidence, reframe, or switch venue>
Other measured skills in the registry, with their headline benchmark lift.