User Tools

Site Tools


provenance:literature:bibliography

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
provenance:literature:bibliography [2026/09/04 17:39] – Second-sitting audit 2026-09-04: five duplicate entries consolidated (keys kept/deleted, invariants, wider umlaut-folded scan, rendered check, amendments); review passes pending, recorded as such. Authored by Claude karel.kubicek.claudeprovenance:literature:bibliography [2026/09/04 18:43] (current) – Second-sitting audit: apply the four review passes' findings (autoKey STOP-list rule, 20-page union, 28/26 candidate split, 160-vs-161, first-sitting labelling, render-check off-by-one) and publish the full review log. Authored by Claude karel.kubicek.claude
Line 14: Line 14:
 ===== Run record ===== ===== Run record =====
  
-  * Run date: 2026-09-04 (UTC). First revision of this page.+  * Run date: 2026-09-04 (UTC). First sitting; first revision of this page.
   * Authoring agent: Claude Opus 5, executing the drain item ''audit-usenix-author-lists'' non-interactively. No human in the loop during the run.   * Authoring agent: Claude Opus 5, executing the drain item ''audit-usenix-author-lists'' non-interactively. No human in the loop during the run.
   * Corpus at run time: 5,859 extracted papers, 2010–2026, over CCS, IMC, NDSS, PETS, USENIX Security, TheWebConf and IEEE S&P. Read-only inputs under ''/workspace/publications_dataset/data/''.   * Corpus at run time: 5,859 extracted papers, 2010–2026, over CCS, IMC, NDSS, PETS, USENIX Security, TheWebConf and IEEE S&P. Read-only inputs under ''/workspace/publications_dataset/data/''.
-  * Live bibliography read at revision **1788471646**, 382,620 bytes, **837 entries**, exported with ''?do=export_raw'' and kept at ''out/usenix_audit/bib_live.txt''. Every figure below is against that snapshot.+  * Live bibliography read at revision **1788471646**, 382,620 bytes, **837 entries**, exported with ''?do=export_raw'' and kept at ''out/usenix_audit/bib_live.txt''. Every figure in the first-sitting sections below is against that snapshot; the second sitting's figures are against its own, later snapshots, named where they are used.
   * Nothing on ''literature:bibliography'' was edited by this run. The only content change is the one-line pointer to this page.   * Nothing on ''literature:bibliography'' was edited by this run. The only content change is the one-line pointer to this page.
   * ''scripts/fetch_authors.py'' and ''out/authors.json'' were changed. ''out/usenix_audit/authors.json.before'' is the pre-run snapshot and is what the audit diffs against.   * ''scripts/fetch_authors.py'' and ''out/authors.json'' were changed. ''out/usenix_audit/authors.json.before'' is the pre-run snapshot and is what the audit diffs against.
Line 35: Line 35:
 | Is the same paper in the bibliography twice? | all 837 entries (first sitting) | **yes, 5 pairs** — latent, no page cited both keys of a pair | | Is the same paper in the bibliography twice? | all 837 entries (first sitting) | **yes, 5 pairs** — latent, no page cited both keys of a pair |
 | … and after the second sitting? | all 850 entries on the saved page | **0 pairs**, both scans; 23 markers on 13 pages repointed first, then the 5 entries deleted | | … and after the second sitting? | all 850 entries on the saved page | **0 pairs**, both scans; 23 markers on 13 pages repointed first, then the 5 entries deleted |
-| Did the umlaut slip (''bottger''/''boettger'') recur for any other author? | 855 entries, first-author surname folded so Böttger = Boettger = Bottger, same year | **no** — 58 candidates printed, all read, none a duplicate |+| Did the umlaut slip (''bottger''/''boettger'') recur for any other author? | 855 entries before and 850 afterunder all four rules — shared DOI, shared title, near-title, and same year with the first-author surname folded so Böttger = Boettger = Bottger | **no** — 58 candidates printed, all read, none a duplicate |
 | Are the checks above capable of failing? | 13 mutations | all 13 change the reported counts | | Are the checks above capable of failing? | 13 mutations | all 13 change the reported counts |
  
Line 589: Line 589:
  
 **No page currently cites both keys of a pair**, checked by **No page currently cites both keys of a pair**, checked by
-''scripts/bib_dupe_cocitation.py'' over the 160 other pages on the wiki (161 in+''scripts/bib_dupe_cocitation.py'' over the 160 other pages on the wiki at the time (161 in
 ''dw.mjs pages'', less ''literature:bibliography'' itself). 26 pages cite at ''dw.mjs pages'', less ''literature:bibliography'' itself). 26 pages cite at
-least one key of some pair; ''bouhoula2024_automated'' alone is on 11so no reference list renders the paper twice today. This is latent, not+least one key of some pair; ''bouhoula2024_automated'' alone is on 11so no reference list renders the paper twice today. This is latent, not
 visible. Consolidating means choosing one key per pair and rewriting %%{[key]}%% visible. Consolidating means choosing one key per pair and rewriting %%{[key]}%%
 markers across the 26 pages that cite one, which is a different piece of work markers across the 26 pages that cite one, which is a different piece of work
Line 597: Line 597:
 ''dedupe-bibliography-entries'' rather than half-done here. ''dedupe-bibliography-entries'' rather than half-done here.
  
-**Closed later the same day** by the item ''dedup-regional-filter-lists-bibkey''; +**Closed later the same day**, but under a different item name than the one 
-the consolidation and its invariants are the section //Audit 2026-09-04, second +filed here. ''dedup-regional-filter-lists-bibkey'' had been raised on 2026-08-14 
-sitting// below. The table and counts in this section describe the 837-entry +for the Böttger pair alone, with the instruction to "check for other 
-file and are left as they were.+duplicate-title pairs in the same pass"it therefore already covered the work 
 +''dedupe-bibliography-entries'' was filed for, and was the one that ran. The 
 +consolidation and its invariants are the section //Audit 2026-09-04, second 
 +sitting// below. ''dedupe-bibliography-entries'' is superseded by it and should 
 +be closed as such; this run could add items to the queue but not close them. 
 +The table and counts in this section describe the 837-entry file and are left 
 +as they were.
  
 ===== Audit 2026-09-04, second sitting: the five duplicates consolidated ===== ===== Audit 2026-09-04, second sitting: the five duplicates consolidated =====
Line 611: Line 617:
 revision 1788526615 (855 entries) and of all 161 other pages, taken at 17:21 revision 1788526615 (855 entries) and of all 161 other pages, taken at 17:21
 UTC and re-checked against ''dw.mjs pages'' immediately before saving: no UTC and re-checked against ''dw.mjs pages'' immediately before saving: no
-revision had moved.+revision had moved. **161, where the first sitting says 160**: this provenance 
 +page did not exist when that count was taken, and it is one of the 26 that name 
 +a deleted key in prose. Both numbers are right for their own date.
  
 ==== Which key was kept, and why ==== ==== Which key was kept, and why ====
  
-Neither key of any pair was minted by ''bibgen.mjs'' — PETS and USENIX index +None of the ten keys can have been minted from an author list: PETS and USENIX 
-records carry no authors, so all ten were typed by hand. The tie-break is the+index records carry none, so ''autoKey'' would have fallen back to the surname 
 +in the landing URL or required an explicit ''--key''. The tie-break is the
 file's own majority convention, **surname + year + ''_'' + first title word, file's own majority convention, **surname + year + ''_'' + first title word,
-diacritics dropped**, which is also what ''bibgen.mjs'' mints when it has an +diacritics dropped** — where "first title word" is ''bibgen.mjs'' ''autoKey'': 
-author list. ''scripts/bib_key_convention.py'' counts how the 25 entries whose +the first word longer than three letters that is not in its ''STOP'' list
-first author's surname carries a diacritic spell it in the key:+''Understanding'' is in ''STOP'', which is why the kept key is 
 +''bottger2025_regional'' and not ''bottger2025_understanding''. ''scripts/bib_key_convention.py'' counts how the 25 entries whose 
 +first author's surname carries a diacritic spell it in the key. It runs on the 
 +**855-entry file, before the deletion**, so the Böttger paper is in it twice, 
 +once in each row it is the example for; after the save 24 entries remain, 19 of 
 +them stripped:
  
 ^ Key spelling of the diacritic ^ Entries (of 25) ^ Examples ^ ^ Key spelling of the diacritic ^ Entries (of 25) ^ Examples ^
Line 646: Line 660:
   - Run ''scripts/bib_dedup_scan.py'' — the wider scan this item asked for — on the export: 5 definite pairs, 58 candidates.   - Run ''scripts/bib_dedup_scan.py'' — the wider scan this item asked for — on the export: 5 definite pairs, 58 candidates.
   - Run ''scripts/bib_dedup_apply.py'' offline. It rewrites the markers and the bibliography into ''out/dedup_apply/'' and asserts the invariants in its docstring. It saves nothing.   - Run ''scripts/bib_dedup_apply.py'' offline. It rewrites the markers and the bibliography into ''out/dedup_apply/'' and asserts the invariants in its docstring. It saves nothing.
-  - Save the **20 pages first**, each with ''--if-rev'' against the revision read at export, then the bibliography. In that order nothing ever renders unresolved: the kept keys existed while the deleted ones were still cited, and the deleted ones were gone only once no page cited them.+  - Save the **20 pages first** — the 13 whose markers changed plus the 10 given an amendmentthree pages being in both sets — each with ''--if-rev'' against the revision read at export, then the bibliography: 21 saves. In that order nothing ever renders unresolved: the kept keys existed while the deleted ones were still cited, and the deleted ones were gone only once no page cited them.
   - Purge the bibtex4dw cache on the bibliography and every repointed page (''?purge=true''; see the first sitting for why a rendered check passes on a stale cache without this).   - Purge the bibtex4dw cache on the bibliography and every repointed page (''?purge=true''; see the first sitting for why a rendered check passes on a stale cache without this).
   - Re-fetch the 13 repointed pages and compare rendered reference-list length and marker count against copies fetched before the edit (''scripts/bib_dedup_render_check.py'').   - Re-fetch the 13 repointed pages and compare rendered reference-list length and marker count against copies fetched before the edit (''scripts/bib_dedup_render_check.py'').
Line 710: Line 724:
   citekey  (2 page(s))   citekey  (2 page(s))
   key  (18 page(s))   key  (18 page(s))
 +distinct pages carrying any such example marker, AFTER: 20
  
 deleted keys still named in PROSE (not markers), left as historical record: 26 page(s) deleted keys still named in PROSE (not markers), left as historical record: 26 page(s)
Line 746: Line 761:
 keys of a pair (a page that had would have lost a reference silently); and the keys of a pair (a page that had would have lost a reference silently); and the
 four "unresolved" strings — ''key'', ''citekey'', ''cite'', ''...'' — are four "unresolved" strings — ''key'', ''citekey'', ''cite'', ''...'' — are
-documentation examples written as literal markers in prose on 18 pages, +documentation examples written as literal markers in prose on **20** distinct 
-identical before and after. They are a pre-existing residue this run did not +pages (''key'' alone is on 18; the per-string counts overlapwhich is why the 
-touch and did not create.+script prints the union), identical before and after. They are a pre-existing 
 +residue this run did not touch and did not create.
  
 ==== Rendered check ==== ==== Rendered check ====
Line 771: Line 787:
 </code> </code>
  
-''-1'' is [[:provenance:design:archives]], which cites papers but carries no+Three rows sit one below the apply table's distinct-key count — 
 +''privacy:browser_storage'' 29 vs 28, ''privacy:requests'' 39 vs 38, 
 +''statistics:pvalue_corrections'' 28 vs 27 — because each carries a 
 +**documentation example** written as a real marker: ''%%{[key]}%%'' on the 
 +first, and a contributor instruction naming ''LePochat2019_tranco'' on the 
 +other two, which the plugin does not render at all. The apply script counts 
 +those as citations, so its distinct-key column and its "pages citing each key" 
 +lists are one high on those three pages. It does not touch the consolidation: 
 +none of the five pairs is involved. ''-1'' is [[:provenance:design:archives]], 
 +which cites papers but carries no
 ''%%<bibtex bibliography>%%'' block, so it has no reference list to count. The ''%%<bibtex bibliography>%%'' block, so it has no reference list to count. The
 "deleted-key strings" on the three provenance pages are their dated amendment "deleted-key strings" on the three provenance pages are their dated amendment
Line 789: Line 814:
 file, **0 definite** and the same 58. file, **0 definite** and the same 58.
  
-All 58 were read by hand and **none is a duplicate**. Fifty-four are one first +All 58 were read by hand and **none is a duplicate**. Three are DuckDuckGo 
-author with two or three different papers in one year (Durumeric 2013–2015, +artefacts whose "surname" is the vendor name; one is a replication and its
-Li 2017 and 2024, Liu 2025, Agarwal 2025 …); one is a replication and its+
 original, caught by the title rule (''bratton2019_replication'' / original, caught by the title rule (''bratton2019_replication'' /
-''sumner2014_exaggeration'')three are DuckDuckGo artefacts whose "surnameis +''sumner2014_exaggeration''). Of the remaining 54, the script's own 
-the vendor name. No second umlaut pair exists in the file. The list is the +first-author comparison splits them **28 / 26**: 28 are the same first author 
-residue of the fold and is printed in full so the judgement can be checked:+with two or three different papers in one year (Durumeric 2013–2015, Vastel 
 +2018, Oest 2020, Kancherla 2025 …), and 26 have first-author strings that 
 +differ: 25 are **different people who share a surname and a year** — Li, Zhang, 
 +Liu, Lin, Wu, Agarwal, Tang — and one is a single person spelled two ways 
 +(''Al Roomi'' / ''Alroomi'', 2023). That 
 +second class is the price of a rule that folds surnames: it is the only way 
 +Böttger and Boettger can be paired at all. No second umlaut pair exists in the file. The list is the residue 
 +of the fold and is printed in full, with both first-author strings on every 
 +row, so the judgement can be checked:
  
 <code> <code>
Line 819: Line 851:
  
 CANDIDATE pairs (rule C or D only) — judged by hand, see the provenance page: 58 CANDIDATE pairs (rule C or D only) — judged by hand, see the provenance page: 58
-  [D] LePochat2019_tranco  /  LePochat2019_tranco_eval+  [D] LePochat2019_tranco  /  LePochat2019_tranco_eval   first author: SAME ({Le Pochat}, Victor | {Le Pochat}, Victor)
        2019 Tranco: A Research-Oriented Top Sites Ranking Hardened Against Manipulation        2019 Tranco: A Research-Oriented Top Sites Ranking Hardened Against Manipulation
        2019 Evaluating the Long-term Effects of Parameters on the Characteristics of the {Tranco} Top Sites Rank        2019 Evaluating the Long-term Effects of Parameters on the Characteristics of the {Tranco} Top Sites Rank
-  [D] agarwal2024_peeking  /  agarwal2024_poster+  [D] agarwal2024_peeking  /  agarwal2024_poster   first author: differs (Agarwal, Shubham | Agarwal, Sharad)
        2024 Peeking through the window: Fingerprinting Browser Extensions through Page-Visible Execution Traces         2024 Peeking through the window: Fingerprinting Browser Extensions through Page-Visible Execution Traces 
        2024 Poster: A Comprehensive Categorization of SMS Scams        2024 Poster: A Comprehensive Categorization of SMS Scams
-  [D] agarwal2025_dropped  /  agarwal2025_fishing+  [D] agarwal2025_dropped  /  agarwal2025_fishing   first author: SAME (Agarwal, Sharad | Agarwal, Sharad)
        2025 'Hey mum, I dropped my phone down the toilet': Investigating Hi Mum and Dad SMS Scams in the United         2025 'Hey mum, I dropped my phone down the toilet': Investigating Hi Mum and Dad SMS Scams in the United 
        2025 Fishing for Smishing: Understanding SMS Phishing Infrastructure and Strategies by Mining Public User        2025 Fishing for Smishing: Understanding SMS Phishing Infrastructure and Strategies by Mining Public User
-  [D] agarwal2025_dropped  /  agarwal2025_mindsets+  [D] agarwal2025_dropped  /  agarwal2025_mindsets   first author: differs (Agarwal, Sharad | Agarwal, Shubham)
        2025 'Hey mum, I dropped my phone down the toilet': Investigating Hi Mum and Dad SMS Scams in the United         2025 'Hey mum, I dropped my phone down the toilet': Investigating Hi Mum and Dad SMS Scams in the United 
        2025 "I have no idea how to make it safer": Studying Security and Privacy Mindsets of Browser Extension D        2025 "I have no idea how to make it safer": Studying Security and Privacy Mindsets of Browser Extension D
-  [D] agarwal2025_fishing  /  agarwal2025_mindsets+  [D] agarwal2025_fishing  /  agarwal2025_mindsets   first author: differs (Agarwal, Sharad | Agarwal, Shubham)
        2025 Fishing for Smishing: Understanding SMS Phishing Infrastructure and Strategies by Mining Public User        2025 Fishing for Smishing: Understanding SMS Phishing Infrastructure and Strategies by Mining Public User
        2025 "I have no idea how to make it safer": Studying Security and Privacy Mindsets of Browser Extension D        2025 "I have no idea how to make it safer": Studying Security and Privacy Mindsets of Browser Extension D
-  [D] alroomi2023_login  /  alroomi2023_password+  [D] alroomi2023_login  /  alroomi2023_password   first author: differs (Al Roomi, Suood | Alroomi, Suood)
        2023 A Large-Scale Measurement of Website Login Policies        2023 A Large-Scale Measurement of Website Login Policies
        2023 Measuring Website Password Creation Policies At Scale        2023 Measuring Website Password Creation Policies At Scale
-  [D] bahrami2025_bytedefender  /  bahrami2025_cookieguard+  [D] bahrami2025_bytedefender  /  bahrami2025_cookieguard   first author: SAME (Nikkhah Bahrami, Pouneh | Nikkhah Bahrami, Pouneh)
        2025 Byte by Byte: Unmasking Browser Fingerprinting at the Function Level Using V8 Bytecode Transformers        2025 Byte by Byte: Unmasking Browser Fingerprinting at the Function Level Using V8 Bytecode Transformers
        2025 {CookieGuard}: Characterizing and Isolating the First-Party Cookie Jar        2025 {CookieGuard}: Characterizing and Isolating the First-Party Cookie Jar
-  [D] bashir2019_adstxt  /  bashir2019_quantity+  [D] bashir2019_adstxt  /  bashir2019_quantity   first author: SAME (Bashir, Muhammad Ahmad | Bashir, Muhammad Ahmad)
        2019 A Longitudinal Analysis of the ads.txt Standard        2019 A Longitudinal Analysis of the ads.txt Standard
        2019 Quantity vs. Quality: Evaluating User Interest Profiles Using Ad Preference Managers        2019 Quantity vs. Quality: Evaluating User Interest Profiles Using Ad Preference Managers
-  [D] bhuiyan2025_digital  /  bhuiyan2025_visitors+  [D] bhuiyan2025_digital  /  bhuiyan2025_visitors   first author: SAME (Bhuiyan, Masudul Hasan Masud | Bhuiyan, Masudul Hasan Masud)
        2025 Digital Disparities: A Comparative Web Measurement Study Across Economic Boundaries        2025 Digital Disparities: A Comparative Web Measurement Study Across Economic Boundaries
        2025 Not All Visitors are Bilingual: A Measurement Study of the Multilingual Web from an Accessibility Pe        2025 Not All Visitors are Bilingual: A Measurement Study of the Multilingual Web from an Accessibility Pe
-  [C] bratton2019_replication  /  sumner2014_exaggeration+  [C] bratton2019_replication  /  sumner2014_exaggeration   first author: differs (Bratton, Luke | Sumner, Petroc)
        2019 The Association Between Exaggeration in Health-Related Science News and Academic Press Releases: A R        2019 The Association Between Exaggeration in Health-Related Science News and Academic Press Releases: A R
        2014 The Association Between Exaggeration in Health Related Science News and Academic Press Releases: Ret        2014 The Association Between Exaggeration in Health Related Science News and Academic Press Releases: Ret
-  [D] chen2021_cookieswap  /  chen2021_detecting+  [D] chen2021_cookieswap  /  chen2021_detecting   first author: SAME (Chen, Quan | Chen, Quan)
        2021 Cookie Swap Party: Abusing First-Party Cookies for Web Tracking        2021 Cookie Swap Party: Abusing First-Party Cookies for Web Tracking
        2021 Detecting Filter List Evasion with Event-Loop-Turn Granularity JavaScript Signatures        2021 Detecting Filter List Evasion with Event-Loop-Turn Granularity JavaScript Signatures
-  [D] chen2025_parents  /  chen2025_semantics+  [D] chen2025_parents  /  chen2025_semantics   first author: differs (Chen, Xiaowei | Chen, Baiqi)
        2025 Empowering Parents to Support Children's Online Security and Privacy: Findings from a Randomized Con        2025 Empowering Parents to Support Children's Online Security and Privacy: Findings from a Randomized Con
        2025 Semantics-Aware Cookie Purpose Compliance        2025 Semantics-Aware Cookie Purpose Compliance
-  [CD] duckduckgo_tracker_radar_2026  /  duckduckgo_tracker_radar_detector_2026+  [CD] duckduckgo_tracker_radar_2026  /  duckduckgo_tracker_radar_detector_2026   first author: SAME ({DuckDuckGo} | {DuckDuckGo})
        2026 DuckDuckGo Tracker Radar        2026 DuckDuckGo Tracker Radar
        2026 DuckDuckGo Tracker Radar Detector        2026 DuckDuckGo Tracker Radar Detector
-  [D] duckduckgo_tracker_radar_2026  /  duckduckgo_trc_2026+  [D] duckduckgo_tracker_radar_2026  /  duckduckgo_trc_2026   first author: SAME ({DuckDuckGo} | {DuckDuckGo})
        2026 DuckDuckGo Tracker Radar        2026 DuckDuckGo Tracker Radar
        2026 Tracker Radar Collector        2026 Tracker Radar Collector
-  [D] duckduckgo_tracker_radar_detector_2026  /  duckduckgo_trc_2026+  [D] duckduckgo_tracker_radar_detector_2026  /  duckduckgo_trc_2026   first author: SAME ({DuckDuckGo} | {DuckDuckGo})
        2026 DuckDuckGo Tracker Radar Detector        2026 DuckDuckGo Tracker Radar Detector
        2026 Tracker Radar Collector        2026 Tracker Radar Collector
-  [D] durumeric2013_https  /  durumeric2013_zmap+  [D] durumeric2013_https  /  durumeric2013_zmap   first author: SAME (Durumeric, Zakir | Durumeric, Zakir)
        2013 Analysis of the HTTPS certificate ecosystem        2013 Analysis of the HTTPS certificate ecosystem
        2013 {ZMap}: Fast Internet-wide Scanning and Its Security Applications        2013 {ZMap}: Fast Internet-wide Scanning and Its Security Applications
-  [D] durumeric2014_heartbleed  /  durumeric2014_view+  [D] durumeric2014_heartbleed  /  durumeric2014_view   first author: SAME (Durumeric, Zakir | Durumeric, Zakir)
        2014 The Matter of Heartbleed        2014 The Matter of Heartbleed
        2014 An Internet-Wide View of Internet-Wide Scanning        2014 An Internet-Wide View of Internet-Wide Scanning
-  [D] durumeric2015_neither  /  durumeric2015_search+  [D] durumeric2015_neither  /  durumeric2015_search   first author: SAME (Durumeric, Zakir | Durumeric, Zakir)
        2015 Neither Snow Nor Rain Nor MITM...: An Empirical Analysis of Email Delivery Security        2015 Neither Snow Nor Rain Nor MITM...: An Empirical Analysis of Email Delivery Security
        2015 A Search Engine Backed by Internet-Wide Scanning        2015 A Search Engine Backed by Internet-Wide Scanning
-  [D] edu2022_alexa  /  edu2022_exploring+  [D] edu2022_alexa  /  edu2022_exploring   first author: SAME (Edu, Jide S. | Edu, Jide S.)
        2022 Measuring Alexa Skill Privacy Practices across Three Years        2022 Measuring Alexa Skill Privacy Practices across Three Years
        2022 Exploring the security and privacy risks of chatbots in messaging services        2022 Exploring the security and privacy risks of chatbots in messaging services
-  [D] iqbal2022_khaleesi  /  iqbal2022_left+  [D] iqbal2022_khaleesi  /  iqbal2022_left   first author: differs (Umar Iqbal | Iqbal, Hassan)
        2022 Khaleesi: Breaker of Advertising and Tracking Request Chains        2022 Khaleesi: Breaker of Advertising and Tracking Request Chains
        2022 Left or Right: A Peek into the Political Biases in Email Spam Filtering Algorithms During US Electio        2022 Left or Right: A Peek into the Political Biases in Email Spam Filtering Algorithms During US Electio
-  [D] kancherla2025_johnny  /  kancherla2025_least+  [D] kancherla2025_johnny  /  kancherla2025_least   first author: SAME (Kancherla, Gayatri Priyadarsini | Kancherla, Gayatri Priyadarsini)
        2025 Johnny Can't Revoke Consent Either: Measuring Compliance of Consent Revocation on the Web        2025 Johnny Can't Revoke Consent Either: Measuring Compliance of Consent Revocation on the Web
        2025 Least Privilege Access for Persistent Storage Mechanisms in Web Browsers        2025 Least Privilege Access for Persistent Storage Mechanisms in Web Browsers
-  [D] kirchner2024_black  /  kirchner2024_dancer+  [D] kirchner2024_black  /  kirchner2024_dancer   first author: SAME (Kirchner, Robin | Kirchner, Robin)
        2024 A Black-Box Privacy Analysis of Messaging Service Providers' Chat Message Processing        2024 A Black-Box Privacy Analysis of Messaging Service Providers' Chat Message Processing
        2024 Dancer in the Dark: Synthesizing and Evaluating Polyglots for Blind Cross-Site Scripting        2024 Dancer in the Dark: Synthesizing and Evaluating Polyglots for Blind Cross-Site Scripting
-  [D] lee2023_adtargeting  /  lee2023_track+  [D] lee2023_adtargeting  /  lee2023_track   first author: differs (Lee, Hao-Ping (Hank) | Lee, Dongkeun)
        2023 When and Why Do People Want Ad Targeting Explanations? Evidence from a Four-Week, Mixed-Methods Fiel        2023 When and Why Do People Want Ad Targeting Explanations? Evidence from a Four-Week, Mixed-Methods Fiel
        2023 Net-track: Generic Web Tracking Detection Using Packet Metadata        2023 Net-track: Generic Web Tracking Detection Using Packet Metadata
-  [D] li2016_remedying  /  li2016_youve+  [D] li2016_remedying  /  li2016_youve   first author: SAME (Li, Frank | Li, Frank)
        2016 Remedying Web Hijacking: Notification Effectiveness and Webmaster Comprehension        2016 Remedying Web Hijacking: Notification Effectiveness and Webmaster Comprehension
        2016 You've Got Vulnerability: Exploring Effective Vulnerability Notifications        2016 You've Got Vulnerability: Exploring Effective Vulnerability Notifications
-  [D] li2017_radar  /  li2017_security+  [D] li2017_radar  /  li2017_security   first author: differs (Li, Zhenhua | Li, Frank)
        2017 FBS-Radar: Uncovering Fake Base Stations at Scale in the Wild        2017 FBS-Radar: Uncovering Fake Base Stations at Scale in the Wild
        2017 A Large-Scale Empirical Study of Security Patches        2017 A Large-Scale Empirical Study of Security Patches
-  [D] li2017_radar  /  li2017_static+  [D] li2017_radar  /  li2017_static   first author: differs (Li, Zhenhua | Li, Li)
        2017 FBS-Radar: Uncovering Fake Base Stations at Scale in the Wild        2017 FBS-Radar: Uncovering Fake Base Stations at Scale in the Wild
        2017 Static analysis of Android apps: A systematic literature review        2017 Static analysis of Android apps: A systematic literature review
-  [D] li2017_security  /  li2017_static+  [D] li2017_security  /  li2017_static   first author: differs (Li, Frank | Li, Li)
        2017 A Large-Scale Empirical Study of Security Patches        2017 A Large-Scale Empirical Study of Security Patches
        2017 Static analysis of Android apps: A systematic literature review        2017 Static analysis of Android apps: A systematic literature review
-  [D] li2024_bounce  /  li2024_wellinformed+  [D] li2024_bounce  /  li2024_wellinformed   first author: differs (Li, Ruixuan | Li, Shuai)
        2024 Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider        2024 Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider
        2024 Are We Getting Well-informed? An In-depth Study of Runtime Privacy Notice Practice in Mobile Apps        2024 Are We Getting Well-informed? An In-depth Study of Runtime Privacy Notice Practice in Mobile Apps
-  [D] li2024_bounce  /  li2024_worldwide+  [D] li2024_bounce  /  li2024_worldwide   first author: SAME (Li, Ruixuan | Li, Ruixuan)
        2024 Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider        2024 Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider
        2024 A Worldwide View on the Reachability of Encrypted DNS Services        2024 A Worldwide View on the Reachability of Encrypted DNS Services
-  [D] li2024_wellinformed  /  li2024_worldwide+  [D] li2024_wellinformed  /  li2024_worldwide   first author: differs (Li, Shuai | Li, Ruixuan)
        2024 Are We Getting Well-informed? An In-depth Study of Runtime Privacy Notice Practice in Mobile Apps        2024 Are We Getting Well-informed? An In-depth Study of Runtime Privacy Notice Practice in Mobile Apps
        2024 A Worldwide View on the Reachability of Encrypted DNS Services        2024 A Worldwide View on the Reachability of Encrypted DNS Services
-  [D] liao2016_characterizing  /  liao2016_seeking+  [D] liao2016_characterizing  /  liao2016_seeking   first author: SAME (Liao, Xiaojing | Liao, Xiaojing)
        2016 Characterizing Long-tail SEO Spam on Cloud Web Hosting Services        2016 Characterizing Long-tail SEO Spam on Cloud Web Hosting Services
        2016 Seeking Nonsense, Looking for Trouble: Efficient Promotional-Infection Detection through Semantic In        2016 Seeking Nonsense, Looking for Trouble: Efficient Promotional-Infection Detection through Semantic In
-  [D] lin2021_longitudinal  /  lin2021_phishpedia+  [D] lin2021_longitudinal  /  lin2021_phishpedia   first author: differs (Lin, Fuqi | Lin, Yun)
        2021 A Longitudinal Study of Removed Apps in {iOS} App Store        2021 A Longitudinal Study of Removed Apps in {iOS} App Store
        2021 Phishpedia: A Hybrid Deep Learning Based Approach to Visually Identify Phishing Webpages        2021 Phishpedia: A Hybrid Deep Learning Based Approach to Visually Identify Phishing Webpages
-  [D] lin2022_investigating  /  lin2022_sheep+  [D] lin2022_investigating  /  lin2022_sheep   first author: differs (Lin, Su-Chin | Lin, Xu)
        2022 Investigating Advertisers' Domain-changing Behaviors and Their Impacts on Ad-blocker Filter Lists        2022 Investigating Advertisers' Domain-changing Behaviors and Their Impacts on Ad-blocker Filter Lists
        2022 Phish in Sheep's Clothing: Exploring the Authentication Pitfalls of Browser Fingerprinting        2022 Phish in Sheep's Clothing: Exploring the Authentication Pitfalls of Browser Fingerprinting
-  [D] liu2024_opted  /  liu2024_promises+  [D] liu2024_opted  /  liu2024_promises   first author: differs (Liu, Zengrui | Liu, Xiaoyin)
        2024 Opted Out, Yet Tracked: Are Regulations Enough to Protect Your Privacy?        2024 Opted Out, Yet Tracked: Are Regulations Enough to Protect Your Privacy?
        2024 From Promises to Practice: Evaluating the Private Browsing Modes of Android Browser Apps        2024 From Promises to Practice: Evaluating the Private Browsing Modes of Android Browser Apps
-  [D] liu2025_domino  /  liu2025_fingerprinting+  [D] liu2025_domino  /  liu2025_fingerprinting   first author: differs (Liu, Zhengyu | Liu, Zengrui)
        2025 The DOMino Effect: Detecting and Exploiting DOM Clobbering Gadgets via Concolic Execution with Symbo        2025 The DOMino Effect: Detecting and Exploiting DOM Clobbering Gadgets via Concolic Execution with Symbo
        2025 The First Early Evidence of the Use of Browser Fingerprinting for Online Tracking        2025 The First Early Evidence of the Use of Browser Fingerprinting for Online Tracking
-  [D] liu2025_domino  /  liu2025_somesite+  [D] liu2025_domino  /  liu2025_somesite   first author: differs (Liu, Zhengyu | Liu, Enze)
        2025 The DOMino Effect: Detecting and Exploiting DOM Clobbering Gadgets via Concolic Execution with Symbo        2025 The DOMino Effect: Detecting and Exploiting DOM Clobbering Gadgets via Concolic Execution with Symbo
        2025 Somesite I Used To Crawl: Awareness, Agency and Efficacy in Protecting Content Creators From AI Craw        2025 Somesite I Used To Crawl: Awareness, Agency and Efficacy in Protecting Content Creators From AI Craw
-  [D] liu2025_fingerprinting  /  liu2025_somesite+  [D] liu2025_fingerprinting  /  liu2025_somesite   first author: differs (Liu, Zengrui | Liu, Enze)
        2025 The First Early Evidence of the Use of Browser Fingerprinting for Online Tracking        2025 The First Early Evidence of the Use of Browser Fingerprinting for Online Tracking
        2025 Somesite I Used To Crawl: Awareness, Agency and Efficacy in Protecting Content Creators From AI Craw        2025 Somesite I Used To Crawl: Awareness, Agency and Efficacy in Protecting Content Creators From AI Craw
-  [D] nguyen2025_breaking  /  nguyen2025_please+  [D] nguyen2025_breaking  /  nguyen2025_please   first author: SAME (Nguyen, Hoang Dai | Nguyen, Hoang Dai)
        2025 Breaking the Shield: Analyzing and Attacking Canvas Fingerprinting Defenses in the Wild        2025 Breaking the Shield: Analyzing and Attacking Canvas Fingerprinting Defenses in the Wild
        2025 "Please don't send that bot anything": A Mixed-methods Study of Personal Impersonation Attacks Targe        2025 "Please don't send that bot anything": A Mixed-methods Study of Personal Impersonation Attacks Targe
-  [D] nisenoff2023_awareness  /  nisenoff2023_defining+  [D] nisenoff2023_awareness  /  nisenoff2023_defining   first author: SAME (Nisenoff, Alexandra | Nisenoff, Alexandra)
        2023 User Awareness and Behaviors Concerning Encrypted {DNS} Settings in Web Browsers        2023 User Awareness and Behaviors Concerning Encrypted {DNS} Settings in Web Browsers
        2023 Defining "Broken": User Experiences and Remediation Tactics When Ad-Blocking or Tracking-Protection         2023 Defining "Broken": User Experiences and Remediation Tactics When Ad-Blocking or Tracking-Protection 
-  [D] oest2020_phishtime  /  oest2020_sunrise+  [D] oest2020_phishtime  /  oest2020_sunrise   first author: SAME (Oest, Adam | Oest, Adam)
        2020 PhishTime: Continuous Longitudinal Measurement of the Effectiveness of Anti-phishing Blacklists        2020 PhishTime: Continuous Longitudinal Measurement of the Effectiveness of Anti-phishing Blacklists
        2020 Sunrise to Sunset: Analyzing the End-to-end Life Cycle and Effectiveness of Phishing Attacks at Scal        2020 Sunrise to Sunset: Analyzing the End-to-end Life Cycle and Effectiveness of Phishing Attacks at Scal
-  [D] papadogiannakis2025_before  /  papadogiannakis2025_darkside+  [D] papadogiannakis2025_before  /  papadogiannakis2025_darkside   first author: SAME (Papadogiannakis, Emmanouil | Papadogiannakis, Emmanouil)
        2025 Before \& After: The Effect of EU's 2022 Code of Practice on Disinformation        2025 Before \& After: The Effect of EU's 2022 Code of Practice on Disinformation
        2025 Welcome to the Dark Side: Analyzing the Revenue Flows of Fraud in the Online Ad Ecosystem        2025 Welcome to the Dark Side: Analyzing the Revenue Flows of Fraud in the Online Ad Ecosystem
-  [D] ruth2022_toppling  /  ruth2022_world+  [D] ruth2022_toppling  /  ruth2022_world   first author: SAME (Ruth, Kimberly | Ruth, Kimberly)
        2022 Toppling Top Lists: Evaluating the Accuracy of Popular Website Lists        2022 Toppling Top Lists: Evaluating the Accuracy of Popular Website Lists
        2022 A World Wide View of Browsing the World Wide Web        2022 A World Wide View of Browsing the World Wide Web
-  [D] scheitle2018_long  /  scheitle2018_rise+  [D] scheitle2018_long  /  scheitle2018_rise   first author: SAME (Scheitle, Quirin | Scheitle, Quirin)
        2018 A Long Way to the Top: Significance, Structure, and Stability of Internet Top Lists        2018 A Long Way to the Top: Significance, Structure, and Stability of Internet Top Lists
        2018 The Rise of Certificate Transparency and Its Implications on the Internet Ecosystem        2018 The Rise of Certificate Transparency and Its Implications on the Internet Ecosystem
-  [D] starov2017_extended  /  starov2017_xhound+  [D] starov2017_extended  /  starov2017_xhound   first author: SAME (Starov, Oleksii | Starov, Oleksii)
        2017 Extended Tracking Powers: Measuring the Privacy Diffusion Enabled by Browser Extensions        2017 Extended Tracking Powers: Measuring the Privacy Diffusion Enabled by Browser Extensions
        2017 XHOUND: Quantifying the Fingerprintability of Browser Extensions        2017 XHOUND: Quantifying the Fingerprintability of Browser Extensions
-  [D] tang2025_misuse  /  tang2025_navigating+  [D] tang2025_misuse  /  tang2025_navigating   first author: differs (Tang, Jenny | Tang, Brian)
        2025 Misuse, Misreporting, Misinterpretation of Statistical Methods in Usable Privacy and Security Papers        2025 Misuse, Misreporting, Misinterpretation of Statistical Methods in Usable Privacy and Security Papers
        2025 Navigating Cookie Consent Violations Across the Globe        2025 Navigating Cookie Consent Violations Across the Globe
-  [D] utz2023_comparing  /  utz2023_rarely+  [D] utz2023_comparing  /  utz2023_rarely   first author: SAME (Utz, Christine | Utz, Christine)
        2023 Comparing Large-Scale Privacy and Security Notifications        2023 Comparing Large-Scale Privacy and Security Notifications
        2023 Privacy Rarely Considered: Exploring Considerations in the Adoption of Third-Party Services by Websi        2023 Privacy Rarely Considered: Exploring Considerations in the Adoption of Third-Party Services by Websi
-  [D] vastel2018_scanner  /  vastel2018_stalker+  [D] vastel2018_scanner  /  vastel2018_stalker   first author: SAME (Vastel, Antoine | Vastel, Antoine)
        2018 Fp-Scanner: The Privacy Implications of Browser Fingerprint Inconsistencies        2018 Fp-Scanner: The Privacy Implications of Browser Fingerprint Inconsistencies
        2018 FP-STALKER: Tracking Browser Fingerprint Evolutions        2018 FP-STALKER: Tracking Browser Fingerprint Evolutions
-  [D] vekaria2025_bighelp  /  vekaria2025_soktracking+  [D] vekaria2025_bighelp  /  vekaria2025_soktracking   first author: SAME (Vekaria, Yash | Vekaria, Yash)
        2025 Big Help or Big Brother? Auditing Tracking, Profiling, and Personalization in Generative AI Assistan        2025 Big Help or Big Brother? Auditing Tracking, Profiling, and Personalization in Generative AI Assistan
        2025 SoK: Advances and Open Problems in Web Tracking        2025 SoK: Advances and Open Problems in Web Tracking
-  [D] venkatadri2019_auditing  /  venkatadri2019_investigating+  [D] venkatadri2019_auditing  /  venkatadri2019_investigating   first author: SAME (Venkatadri, Giridhari | Venkatadri, Giridhari)
        2019 Auditing Offline Data Brokers via Facebook's Advertising Platform        2019 Auditing Offline Data Brokers via Facebook's Advertising Platform
        2019 Investigating sources of PII used in Facebook’s targeted advertising        2019 Investigating sources of PII used in Facebook’s targeted advertising
-  [D] wang2026_masks  /  wang2026_sipconfusion+  [D] wang2026_masks  /  wang2026_sipconfusion   first author: differs (Wang, Weihong | Wang, Qi)
        2026 The Masks We (Think We) Wear: Privacy Threats of Browser-Extension Wallets in the Web3 Ecosystem        2026 The Masks We (Think We) Wear: Privacy Threats of Browser-Extension Wallets in the Web3 Ecosystem
        2026 SIPConfusion: Exploiting SIP Semantic Ambiguities for Caller ID and SMS Spoofing        2026 SIPConfusion: Exploiting SIP Semantic Ambiguities for Caller ID and SMS Spoofing
-  [D] wu2025_appprivacyreport  /  wu2025_revealing+  [D] wu2025_appprivacyreport  /  wu2025_revealing   first author: differs (Wu, Xiaoyuan | Wu, Mengying)
        2025 Transparency or Information Overload? Evaluating Users’ Comprehension and Perceptions of the iOS App        2025 Transparency or Information Overload? Evaluating Users’ Comprehension and Perceptions of the iOS App
        2025 Revealing the Black Box of Device Search Engine: Scanning Assets, Strategies, and Ethical Considerat        2025 Revealing the Black Box of Device Search Engine: Scanning Assets, Strategies, and Ethical Considerat
-  [D] wu2026_email  /  wu2026_tracking+  [D] wu2026_email  /  wu2026_tracking   first author: differs (Wu, Mengying | Wu, Wenhao)
        2026 One Email, Many Faces: A Deep Dive into Identity Confusion in Email Aliases        2026 One Email, Many Faces: A Deep Dive into Identity Confusion in Email Aliases
        2026 Tracking the Stray Sheep: Understanding DNS Response Manipulation in the Wild        2026 Tracking the Stray Sheep: Understanding DNS Response Manipulation in the Wild
-  [D] xie2024_arcanum  /  xie2024_crawling+  [D] xie2024_arcanum  /  xie2024_crawling   first author: SAME (Xie, Qinge | Xie, Qinge)
        2024 Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Conte        2024 Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Conte
        2024 Crawling to the Top: An Empirical Evaluation of Top List Use        2024 Crawling to the Top: An Empirical Evaluation of Top List Use
-  [D] yang2022_extensive  /  yang2022_wtagraph+  [D] yang2022_extensive  /  yang2022_wtagraph   first author: differs (Yang, Mingshuo | Yang, Zhiju)
        2022 An Extensive Study of Residential Proxies in China        2022 An Extensive Study of Residential Proxies in China
        2022 WTAGRAPH: Web Tracking and Advertising Detection using Graph Neural Networks        2022 WTAGRAPH: Web Tracking and Advertising Detection using Graph Neural Networks
-  [D] zhang2022_harpo  /  zhang2022_spartacus+  [D] zhang2022_harpo  /  zhang2022_spartacus   first author: differs (Zhang, Jiang | Zhang, Penghui)
        2022 HARPO: Learning to Subvert Online Behavioral Advertising        2022 HARPO: Learning to Subvert Online Behavioral Advertising
        2022 I'm SPARTACUS, No, I'm SPARTACUS: Proactively Protecting Users from Phishing by Intentionally Trigge        2022 I'm SPARTACUS, No, I'm SPARTACUS: Proactively Protecting Users from Phishing by Intentionally Trigge
-  [D] zhang2024_inbox  /  zhang2024_quic+  [D] zhang2024_inbox  /  zhang2024_quic   first author: differs (Zhang, Jiahe | Zhang, Xumiao)
        2024 Inbox Invasion: Exploiting MIME Ambiguities to Evade Email Attachment Detectors        2024 Inbox Invasion: Exploiting MIME Ambiguities to Evade Email Attachment Detectors
        2024 QUIC is not Quick Enough over Fast Internet        2024 QUIC is not Quick Enough over Fast Internet
-  [D] zhang2025_abusability  /  zhang2025_qrcode+  [D] zhang2025_abusability  /  zhang2025_qrcode   first author: differs (Zhang, Shirley | Zhang, Xin)
        2025 Abusability of Automation Apps in Intimate Partner Violence        2025 Abusability of Automation Apps in Intimate Partner Violence
        2025 Demystifying the (In)Security of {QR} Code-based Login in Real-world Deployments        2025 Demystifying the (In)Security of {QR} Code-based Login in Real-world Deployments
-  [D] zhu2020_label  /  zhu2020_vtset+  [D] zhu2020_label  /  zhu2020_vtset   first author: SAME (Zhu, Shuofei | Zhu, Shuofei)
        2020 Measuring and Modeling the Label Dynamics of Online Anti-Malware Engines        2020 Measuring and Modeling the Label Dynamics of Online Anti-Malware Engines
        2020 Demo: Benchmarking Label Dynamics of VirusTotal Engines        2020 Demo: Benchmarking Label Dynamics of VirusTotal Engines
 +
 +candidates whose first-author string is identical on both sides: 31 of 58; different first author (shared surname, or a non-person 'author'): 27
 </code> </code>
  
Line 1020: Line 1054:
 | Extend this page rather than create ''provenance:literature:bibliography:dedup'' | A page per item | The provenance page mirrors the content page's id; the bibliography has one id. Two sittings, two dated audits, one page | | Extend this page rather than create ''provenance:literature:bibliography:dedup'' | A page per item | The provenance page mirrors the content page's id; the bibliography has one id. Two sittings, two dated audits, one page |
  
-===== What could not be established =====+===== What could not be established, first sitting =====
  
   * **Whether defects 1 and 2 ever reached the wiki.** Zero missing authors survive in ''out/authors.json'' and zero in the live bibliography, but the cache carries no history, so it cannot be shown whether a dropped author was ever cached and later corrected or was never cached at all. The live page is clean either way, which is the question that matters.   * **Whether defects 1 and 2 ever reached the wiki.** Zero missing authors survive in ''out/authors.json'' and zero in the live bibliography, but the cache carries no history, so it cannot be shown whether a dropped author was ever cached and later corrected or was never cached at all. The live page is clean either way, which is the question that matters.
Line 1030: Line 1064:
   * **Whether ''bibgen.mjs'' output was hand-cleaned, or the affected entries were written from another source.** The live entries are correct and the cache was not; the intermediate step left no record. The conclusion "the parser contaminated the cache and never the page" is a statement about the two endpoints, not about what happened between them.   * **Whether ''bibgen.mjs'' output was hand-cleaned, or the affected entries were written from another source.** The live entries are correct and the cache was not; the intermediate step left no record. The conclusion "the parser contaminated the cache and never the page" is a statement about the two endpoints, not about what happened between them.
  
-===== Judgement calls =====+===== Judgement calls, first sitting =====
  
 ^ Call ^ Alternative a reasonable person would pick ^ Why this one ^ ^ Call ^ Alternative a reasonable person would pick ^ Why this one ^
Line 2859: Line 2893:
         author = field(e, "author") or ""         author = field(e, "author") or ""
         year = field(e, "year") or ""         year = field(e, "year") or ""
 +        first = re.split(r"\s+and\s+", author)[0].strip() if author else ""
         rec[k] = dict(doi=doi, title=title, sq=squash(title), year=year,         rec[k] = dict(doi=doi, title=title, sq=squash(title), year=year,
-                      surname=fold_surname(author) if author else "")+                      surname=fold_surname(author) if author else "", first=first)
     print(f"bibliography : {bib}")     print(f"bibliography : {bib}")
     print(f"entries      : {len(entries)}   distinct citekeys: {len(rec)}")     print(f"entries      : {len(entries)}   distinct citekeys: {len(rec)}")
Line 2904: Line 2939:
     print(f"\nCANDIDATE pairs (rule C or D only) — judged by hand, see the "     print(f"\nCANDIDATE pairs (rule C or D only) — judged by hand, see the "
           f"provenance page: {len(candidates)}")           f"provenance page: {len(candidates)}")
 +    # Rule D fires on a folded SURNAME, so it also pairs different people who
 +    # share a common surname (Li, Zhang, Liu). Print the first author's full
 +    # name string for both sides and count how many pairs are the same string,
 +    # so the residue can be described without hand-counting.
 +    same_person = 0
     for p, rules in sorted(candidates.items(), key=lambda x: sorted(x[0])):     for p, rules in sorted(candidates.items(), key=lambda x: sorted(x[0])):
         a, b = sorted(p)         a, b = sorted(p)
-        print(f"  [{''.join(sorted(rules))}] {a}  /  {b}")+        same = rec[a]["first"] == rec[b]["first"
 +        same_person += same 
 +        print(f"  [{''.join(sorted(rules))}] {a}  /  {b}   first author: " 
 +              f"{'SAME' if same else 'differs'} ({rec[a]['first']} | {rec[b]['first']})")
         print(f"       {rec[a]['year']} {rec[a]['title'][:100]}")         print(f"       {rec[a]['year']} {rec[a]['title'][:100]}")
         print(f"       {rec[b]['year']} {rec[b]['title'][:100]}")         print(f"       {rec[b]['year']} {rec[b]['title'][:100]}")
 +    print(f"\ncandidates whose first-author string is identical on both sides: "
 +          f"{same_person} of {len(candidates)}; different first author (shared "
 +          f"surname, or a non-person 'author'): {len(candidates) - same_person}")
     return 1 if definite else 0     return 1 if definite else 0
  
Line 2923: Line 2969:
  
 CANDIDATE pairs (rule C or D only) — judged by hand, see the provenance page: 58 CANDIDATE pairs (rule C or D only) — judged by hand, see the provenance page: 58
-  [D] LePochat2019_tranco  /  LePochat2019_tranco_eval+  [D] LePochat2019_tranco  /  LePochat2019_tranco_eval   first author: SAME ({Le Pochat}, Victor | {Le Pochat}, Victor)
        2019 Tranco: A Research-Oriented Top Sites Ranking Hardened Against Manipulation        2019 Tranco: A Research-Oriented Top Sites Ranking Hardened Against Manipulation
        2019 Evaluating the Long-term Effects of Parameters on the Characteristics of the {Tranco} Top Sites Rank        2019 Evaluating the Long-term Effects of Parameters on the Characteristics of the {Tranco} Top Sites Rank
-  [D] agarwal2024_peeking  /  agarwal2024_poster+  [D] agarwal2024_peeking  /  agarwal2024_poster   first author: differs (Agarwal, Shubham | Agarwal, Sharad)
        2024 Peeking through the window: Fingerprinting Browser Extensions through Page-Visible Execution Traces         2024 Peeking through the window: Fingerprinting Browser Extensions through Page-Visible Execution Traces 
        2024 Poster: A Comprehensive Categorization of SMS Scams        2024 Poster: A Comprehensive Categorization of SMS Scams
-  [D] agarwal2025_dropped  /  agarwal2025_fishing+  [D] agarwal2025_dropped  /  agarwal2025_fishing   first author: SAME (Agarwal, Sharad | Agarwal, Sharad)
        2025 'Hey mum, I dropped my phone down the toilet': Investigating Hi Mum and Dad SMS Scams in the United         2025 'Hey mum, I dropped my phone down the toilet': Investigating Hi Mum and Dad SMS Scams in the United 
        2025 Fishing for Smishing: Understanding SMS Phishing Infrastructure and Strategies by Mining Public User        2025 Fishing for Smishing: Understanding SMS Phishing Infrastructure and Strategies by Mining Public User
-  [D] agarwal2025_dropped  /  agarwal2025_mindsets+  [D] agarwal2025_dropped  /  agarwal2025_mindsets   first author: differs (Agarwal, Sharad | Agarwal, Shubham)
        2025 'Hey mum, I dropped my phone down the toilet': Investigating Hi Mum and Dad SMS Scams in the United         2025 'Hey mum, I dropped my phone down the toilet': Investigating Hi Mum and Dad SMS Scams in the United 
        2025 "I have no idea how to make it safer": Studying Security and Privacy Mindsets of Browser Extension D        2025 "I have no idea how to make it safer": Studying Security and Privacy Mindsets of Browser Extension D
-  [D] agarwal2025_fishing  /  agarwal2025_mindsets+  [D] agarwal2025_fishing  /  agarwal2025_mindsets   first author: differs (Agarwal, Sharad | Agarwal, Shubham)
        2025 Fishing for Smishing: Understanding SMS Phishing Infrastructure and Strategies by Mining Public User        2025 Fishing for Smishing: Understanding SMS Phishing Infrastructure and Strategies by Mining Public User
        2025 "I have no idea how to make it safer": Studying Security and Privacy Mindsets of Browser Extension D        2025 "I have no idea how to make it safer": Studying Security and Privacy Mindsets of Browser Extension D
-  [D] alroomi2023_login  /  alroomi2023_password+  [D] alroomi2023_login  /  alroomi2023_password   first author: differs (Al Roomi, Suood | Alroomi, Suood)
        2023 A Large-Scale Measurement of Website Login Policies        2023 A Large-Scale Measurement of Website Login Policies
        2023 Measuring Website Password Creation Policies At Scale        2023 Measuring Website Password Creation Policies At Scale
-  [D] bahrami2025_bytedefender  /  bahrami2025_cookieguard+  [D] bahrami2025_bytedefender  /  bahrami2025_cookieguard   first author: SAME (Nikkhah Bahrami, Pouneh | Nikkhah Bahrami, Pouneh)
        2025 Byte by Byte: Unmasking Browser Fingerprinting at the Function Level Using V8 Bytecode Transformers        2025 Byte by Byte: Unmasking Browser Fingerprinting at the Function Level Using V8 Bytecode Transformers
        2025 {CookieGuard}: Characterizing and Isolating the First-Party Cookie Jar        2025 {CookieGuard}: Characterizing and Isolating the First-Party Cookie Jar
-  [D] bashir2019_adstxt  /  bashir2019_quantity+  [D] bashir2019_adstxt  /  bashir2019_quantity   first author: SAME (Bashir, Muhammad Ahmad | Bashir, Muhammad Ahmad)
        2019 A Longitudinal Analysis of the ads.txt Standard        2019 A Longitudinal Analysis of the ads.txt Standard
        2019 Quantity vs. Quality: Evaluating User Interest Profiles Using Ad Preference Managers        2019 Quantity vs. Quality: Evaluating User Interest Profiles Using Ad Preference Managers
-  [D] bhuiyan2025_digital  /  bhuiyan2025_visitors+  [D] bhuiyan2025_digital  /  bhuiyan2025_visitors   first author: SAME (Bhuiyan, Masudul Hasan Masud | Bhuiyan, Masudul Hasan Masud)
        2025 Digital Disparities: A Comparative Web Measurement Study Across Economic Boundaries        2025 Digital Disparities: A Comparative Web Measurement Study Across Economic Boundaries
        2025 Not All Visitors are Bilingual: A Measurement Study of the Multilingual Web from an Accessibility Pe        2025 Not All Visitors are Bilingual: A Measurement Study of the Multilingual Web from an Accessibility Pe
-  [C] bratton2019_replication  /  sumner2014_exaggeration+  [C] bratton2019_replication  /  sumner2014_exaggeration   first author: differs (Bratton, Luke | Sumner, Petroc)
        2019 The Association Between Exaggeration in Health-Related Science News and Academic Press Releases: A R        2019 The Association Between Exaggeration in Health-Related Science News and Academic Press Releases: A R
        2014 The Association Between Exaggeration in Health Related Science News and Academic Press Releases: Ret        2014 The Association Between Exaggeration in Health Related Science News and Academic Press Releases: Ret
-  [D] chen2021_cookieswap  /  chen2021_detecting+  [D] chen2021_cookieswap  /  chen2021_detecting   first author: SAME (Chen, Quan | Chen, Quan)
        2021 Cookie Swap Party: Abusing First-Party Cookies for Web Tracking        2021 Cookie Swap Party: Abusing First-Party Cookies for Web Tracking
        2021 Detecting Filter List Evasion with Event-Loop-Turn Granularity JavaScript Signatures        2021 Detecting Filter List Evasion with Event-Loop-Turn Granularity JavaScript Signatures
-  [D] chen2025_parents  /  chen2025_semantics+  [D] chen2025_parents  /  chen2025_semantics   first author: differs (Chen, Xiaowei | Chen, Baiqi)
        2025 Empowering Parents to Support Children's Online Security and Privacy: Findings from a Randomized Con        2025 Empowering Parents to Support Children's Online Security and Privacy: Findings from a Randomized Con
        2025 Semantics-Aware Cookie Purpose Compliance        2025 Semantics-Aware Cookie Purpose Compliance
-  [CD] duckduckgo_tracker_radar_2026  /  duckduckgo_tracker_radar_detector_2026+  [CD] duckduckgo_tracker_radar_2026  /  duckduckgo_tracker_radar_detector_2026   first author: SAME ({DuckDuckGo} | {DuckDuckGo})
        2026 DuckDuckGo Tracker Radar        2026 DuckDuckGo Tracker Radar
        2026 DuckDuckGo Tracker Radar Detector        2026 DuckDuckGo Tracker Radar Detector
-  [D] duckduckgo_tracker_radar_2026  /  duckduckgo_trc_2026+  [D] duckduckgo_tracker_radar_2026  /  duckduckgo_trc_2026   first author: SAME ({DuckDuckGo} | {DuckDuckGo})
        2026 DuckDuckGo Tracker Radar        2026 DuckDuckGo Tracker Radar
        2026 Tracker Radar Collector        2026 Tracker Radar Collector
-  [D] duckduckgo_tracker_radar_detector_2026  /  duckduckgo_trc_2026+  [D] duckduckgo_tracker_radar_detector_2026  /  duckduckgo_trc_2026   first author: SAME ({DuckDuckGo} | {DuckDuckGo})
        2026 DuckDuckGo Tracker Radar Detector        2026 DuckDuckGo Tracker Radar Detector
        2026 Tracker Radar Collector        2026 Tracker Radar Collector
-  [D] durumeric2013_https  /  durumeric2013_zmap+  [D] durumeric2013_https  /  durumeric2013_zmap   first author: SAME (Durumeric, Zakir | Durumeric, Zakir)
        2013 Analysis of the HTTPS certificate ecosystem        2013 Analysis of the HTTPS certificate ecosystem
        2013 {ZMap}: Fast Internet-wide Scanning and Its Security Applications        2013 {ZMap}: Fast Internet-wide Scanning and Its Security Applications
-  [D] durumeric2014_heartbleed  /  durumeric2014_view+  [D] durumeric2014_heartbleed  /  durumeric2014_view   first author: SAME (Durumeric, Zakir | Durumeric, Zakir)
        2014 The Matter of Heartbleed        2014 The Matter of Heartbleed
        2014 An Internet-Wide View of Internet-Wide Scanning        2014 An Internet-Wide View of Internet-Wide Scanning
-  [D] durumeric2015_neither  /  durumeric2015_search+  [D] durumeric2015_neither  /  durumeric2015_search   first author: SAME (Durumeric, Zakir | Durumeric, Zakir)
        2015 Neither Snow Nor Rain Nor MITM...: An Empirical Analysis of Email Delivery Security        2015 Neither Snow Nor Rain Nor MITM...: An Empirical Analysis of Email Delivery Security
        2015 A Search Engine Backed by Internet-Wide Scanning        2015 A Search Engine Backed by Internet-Wide Scanning
-  [D] edu2022_alexa  /  edu2022_exploring+  [D] edu2022_alexa  /  edu2022_exploring   first author: SAME (Edu, Jide S. | Edu, Jide S.)
        2022 Measuring Alexa Skill Privacy Practices across Three Years        2022 Measuring Alexa Skill Privacy Practices across Three Years
        2022 Exploring the security and privacy risks of chatbots in messaging services        2022 Exploring the security and privacy risks of chatbots in messaging services
-  [D] iqbal2022_khaleesi  /  iqbal2022_left+  [D] iqbal2022_khaleesi  /  iqbal2022_left   first author: differs (Umar Iqbal | Iqbal, Hassan)
        2022 Khaleesi: Breaker of Advertising and Tracking Request Chains        2022 Khaleesi: Breaker of Advertising and Tracking Request Chains
        2022 Left or Right: A Peek into the Political Biases in Email Spam Filtering Algorithms During US Electio        2022 Left or Right: A Peek into the Political Biases in Email Spam Filtering Algorithms During US Electio
-  [D] kancherla2025_johnny  /  kancherla2025_least+  [D] kancherla2025_johnny  /  kancherla2025_least   first author: SAME (Kancherla, Gayatri Priyadarsini | Kancherla, Gayatri Priyadarsini)
        2025 Johnny Can't Revoke Consent Either: Measuring Compliance of Consent Revocation on the Web        2025 Johnny Can't Revoke Consent Either: Measuring Compliance of Consent Revocation on the Web
        2025 Least Privilege Access for Persistent Storage Mechanisms in Web Browsers        2025 Least Privilege Access for Persistent Storage Mechanisms in Web Browsers
-  [D] kirchner2024_black  /  kirchner2024_dancer+  [D] kirchner2024_black  /  kirchner2024_dancer   first author: SAME (Kirchner, Robin | Kirchner, Robin)
        2024 A Black-Box Privacy Analysis of Messaging Service Providers' Chat Message Processing        2024 A Black-Box Privacy Analysis of Messaging Service Providers' Chat Message Processing
        2024 Dancer in the Dark: Synthesizing and Evaluating Polyglots for Blind Cross-Site Scripting        2024 Dancer in the Dark: Synthesizing and Evaluating Polyglots for Blind Cross-Site Scripting
-  [D] lee2023_adtargeting  /  lee2023_track+  [D] lee2023_adtargeting  /  lee2023_track   first author: differs (Lee, Hao-Ping (Hank) | Lee, Dongkeun)
        2023 When and Why Do People Want Ad Targeting Explanations? Evidence from a Four-Week, Mixed-Methods Fiel        2023 When and Why Do People Want Ad Targeting Explanations? Evidence from a Four-Week, Mixed-Methods Fiel
        2023 Net-track: Generic Web Tracking Detection Using Packet Metadata        2023 Net-track: Generic Web Tracking Detection Using Packet Metadata
-  [D] li2016_remedying  /  li2016_youve+  [D] li2016_remedying  /  li2016_youve   first author: SAME (Li, Frank | Li, Frank)
        2016 Remedying Web Hijacking: Notification Effectiveness and Webmaster Comprehension        2016 Remedying Web Hijacking: Notification Effectiveness and Webmaster Comprehension
        2016 You've Got Vulnerability: Exploring Effective Vulnerability Notifications        2016 You've Got Vulnerability: Exploring Effective Vulnerability Notifications
-  [D] li2017_radar  /  li2017_security+  [D] li2017_radar  /  li2017_security   first author: differs (Li, Zhenhua | Li, Frank)
        2017 FBS-Radar: Uncovering Fake Base Stations at Scale in the Wild        2017 FBS-Radar: Uncovering Fake Base Stations at Scale in the Wild
        2017 A Large-Scale Empirical Study of Security Patches        2017 A Large-Scale Empirical Study of Security Patches
-  [D] li2017_radar  /  li2017_static+  [D] li2017_radar  /  li2017_static   first author: differs (Li, Zhenhua | Li, Li)
        2017 FBS-Radar: Uncovering Fake Base Stations at Scale in the Wild        2017 FBS-Radar: Uncovering Fake Base Stations at Scale in the Wild
        2017 Static analysis of Android apps: A systematic literature review        2017 Static analysis of Android apps: A systematic literature review
-  [D] li2017_security  /  li2017_static+  [D] li2017_security  /  li2017_static   first author: differs (Li, Frank | Li, Li)
        2017 A Large-Scale Empirical Study of Security Patches        2017 A Large-Scale Empirical Study of Security Patches
        2017 Static analysis of Android apps: A systematic literature review        2017 Static analysis of Android apps: A systematic literature review
-  [D] li2024_bounce  /  li2024_wellinformed+  [D] li2024_bounce  /  li2024_wellinformed   first author: differs (Li, Ruixuan | Li, Shuai)
        2024 Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider        2024 Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider
        2024 Are We Getting Well-informed? An In-depth Study of Runtime Privacy Notice Practice in Mobile Apps        2024 Are We Getting Well-informed? An In-depth Study of Runtime Privacy Notice Practice in Mobile Apps
-  [D] li2024_bounce  /  li2024_worldwide+  [D] li2024_bounce  /  li2024_worldwide   first author: SAME (Li, Ruixuan | Li, Ruixuan)
        2024 Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider        2024 Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider
        2024 A Worldwide View on the Reachability of Encrypted DNS Services        2024 A Worldwide View on the Reachability of Encrypted DNS Services
-  [D] li2024_wellinformed  /  li2024_worldwide+  [D] li2024_wellinformed  /  li2024_worldwide   first author: differs (Li, Shuai | Li, Ruixuan)
        2024 Are We Getting Well-informed? An In-depth Study of Runtime Privacy Notice Practice in Mobile Apps        2024 Are We Getting Well-informed? An In-depth Study of Runtime Privacy Notice Practice in Mobile Apps
        2024 A Worldwide View on the Reachability of Encrypted DNS Services        2024 A Worldwide View on the Reachability of Encrypted DNS Services
-  [D] liao2016_characterizing  /  liao2016_seeking+  [D] liao2016_characterizing  /  liao2016_seeking   first author: SAME (Liao, Xiaojing | Liao, Xiaojing)
        2016 Characterizing Long-tail SEO Spam on Cloud Web Hosting Services        2016 Characterizing Long-tail SEO Spam on Cloud Web Hosting Services
        2016 Seeking Nonsense, Looking for Trouble: Efficient Promotional-Infection Detection through Semantic In        2016 Seeking Nonsense, Looking for Trouble: Efficient Promotional-Infection Detection through Semantic In
-  [D] lin2021_longitudinal  /  lin2021_phishpedia+  [D] lin2021_longitudinal  /  lin2021_phishpedia   first author: differs (Lin, Fuqi | Lin, Yun)
        2021 A Longitudinal Study of Removed Apps in {iOS} App Store        2021 A Longitudinal Study of Removed Apps in {iOS} App Store
        2021 Phishpedia: A Hybrid Deep Learning Based Approach to Visually Identify Phishing Webpages        2021 Phishpedia: A Hybrid Deep Learning Based Approach to Visually Identify Phishing Webpages
-  [D] lin2022_investigating  /  lin2022_sheep+  [D] lin2022_investigating  /  lin2022_sheep   first author: differs (Lin, Su-Chin | Lin, Xu)
        2022 Investigating Advertisers' Domain-changing Behaviors and Their Impacts on Ad-blocker Filter Lists        2022 Investigating Advertisers' Domain-changing Behaviors and Their Impacts on Ad-blocker Filter Lists
        2022 Phish in Sheep's Clothing: Exploring the Authentication Pitfalls of Browser Fingerprinting        2022 Phish in Sheep's Clothing: Exploring the Authentication Pitfalls of Browser Fingerprinting
-  [D] liu2024_opted  /  liu2024_promises+  [D] liu2024_opted  /  liu2024_promises   first author: differs (Liu, Zengrui | Liu, Xiaoyin)
        2024 Opted Out, Yet Tracked: Are Regulations Enough to Protect Your Privacy?        2024 Opted Out, Yet Tracked: Are Regulations Enough to Protect Your Privacy?
        2024 From Promises to Practice: Evaluating the Private Browsing Modes of Android Browser Apps        2024 From Promises to Practice: Evaluating the Private Browsing Modes of Android Browser Apps
-  [D] liu2025_domino  /  liu2025_fingerprinting+  [D] liu2025_domino  /  liu2025_fingerprinting   first author: differs (Liu, Zhengyu | Liu, Zengrui)
        2025 The DOMino Effect: Detecting and Exploiting DOM Clobbering Gadgets via Concolic Execution with Symbo        2025 The DOMino Effect: Detecting and Exploiting DOM Clobbering Gadgets via Concolic Execution with Symbo
        2025 The First Early Evidence of the Use of Browser Fingerprinting for Online Tracking        2025 The First Early Evidence of the Use of Browser Fingerprinting for Online Tracking
-  [D] liu2025_domino  /  liu2025_somesite+  [D] liu2025_domino  /  liu2025_somesite   first author: differs (Liu, Zhengyu | Liu, Enze)
        2025 The DOMino Effect: Detecting and Exploiting DOM Clobbering Gadgets via Concolic Execution with Symbo        2025 The DOMino Effect: Detecting and Exploiting DOM Clobbering Gadgets via Concolic Execution with Symbo
        2025 Somesite I Used To Crawl: Awareness, Agency and Efficacy in Protecting Content Creators From AI Craw        2025 Somesite I Used To Crawl: Awareness, Agency and Efficacy in Protecting Content Creators From AI Craw
-  [D] liu2025_fingerprinting  /  liu2025_somesite+  [D] liu2025_fingerprinting  /  liu2025_somesite   first author: differs (Liu, Zengrui | Liu, Enze)
        2025 The First Early Evidence of the Use of Browser Fingerprinting for Online Tracking        2025 The First Early Evidence of the Use of Browser Fingerprinting for Online Tracking
        2025 Somesite I Used To Crawl: Awareness, Agency and Efficacy in Protecting Content Creators From AI Craw        2025 Somesite I Used To Crawl: Awareness, Agency and Efficacy in Protecting Content Creators From AI Craw
-  [D] nguyen2025_breaking  /  nguyen2025_please+  [D] nguyen2025_breaking  /  nguyen2025_please   first author: SAME (Nguyen, Hoang Dai | Nguyen, Hoang Dai)
        2025 Breaking the Shield: Analyzing and Attacking Canvas Fingerprinting Defenses in the Wild        2025 Breaking the Shield: Analyzing and Attacking Canvas Fingerprinting Defenses in the Wild
        2025 "Please don't send that bot anything": A Mixed-methods Study of Personal Impersonation Attacks Targe        2025 "Please don't send that bot anything": A Mixed-methods Study of Personal Impersonation Attacks Targe
-  [D] nisenoff2023_awareness  /  nisenoff2023_defining+  [D] nisenoff2023_awareness  /  nisenoff2023_defining   first author: SAME (Nisenoff, Alexandra | Nisenoff, Alexandra)
        2023 User Awareness and Behaviors Concerning Encrypted {DNS} Settings in Web Browsers        2023 User Awareness and Behaviors Concerning Encrypted {DNS} Settings in Web Browsers
        2023 Defining "Broken": User Experiences and Remediation Tactics When Ad-Blocking or Tracking-Protection         2023 Defining "Broken": User Experiences and Remediation Tactics When Ad-Blocking or Tracking-Protection 
-  [D] oest2020_phishtime  /  oest2020_sunrise+  [D] oest2020_phishtime  /  oest2020_sunrise   first author: SAME (Oest, Adam | Oest, Adam)
        2020 PhishTime: Continuous Longitudinal Measurement of the Effectiveness of Anti-phishing Blacklists        2020 PhishTime: Continuous Longitudinal Measurement of the Effectiveness of Anti-phishing Blacklists
        2020 Sunrise to Sunset: Analyzing the End-to-end Life Cycle and Effectiveness of Phishing Attacks at Scal        2020 Sunrise to Sunset: Analyzing the End-to-end Life Cycle and Effectiveness of Phishing Attacks at Scal
-  [D] papadogiannakis2025_before  /  papadogiannakis2025_darkside+  [D] papadogiannakis2025_before  /  papadogiannakis2025_darkside   first author: SAME (Papadogiannakis, Emmanouil | Papadogiannakis, Emmanouil)
        2025 Before \& After: The Effect of EU's 2022 Code of Practice on Disinformation        2025 Before \& After: The Effect of EU's 2022 Code of Practice on Disinformation
        2025 Welcome to the Dark Side: Analyzing the Revenue Flows of Fraud in the Online Ad Ecosystem        2025 Welcome to the Dark Side: Analyzing the Revenue Flows of Fraud in the Online Ad Ecosystem
-  [D] ruth2022_toppling  /  ruth2022_world+  [D] ruth2022_toppling  /  ruth2022_world   first author: SAME (Ruth, Kimberly | Ruth, Kimberly)
        2022 Toppling Top Lists: Evaluating the Accuracy of Popular Website Lists        2022 Toppling Top Lists: Evaluating the Accuracy of Popular Website Lists
        2022 A World Wide View of Browsing the World Wide Web        2022 A World Wide View of Browsing the World Wide Web
-  [D] scheitle2018_long  /  scheitle2018_rise+  [D] scheitle2018_long  /  scheitle2018_rise   first author: SAME (Scheitle, Quirin | Scheitle, Quirin)
        2018 A Long Way to the Top: Significance, Structure, and Stability of Internet Top Lists        2018 A Long Way to the Top: Significance, Structure, and Stability of Internet Top Lists
        2018 The Rise of Certificate Transparency and Its Implications on the Internet Ecosystem        2018 The Rise of Certificate Transparency and Its Implications on the Internet Ecosystem
-  [D] starov2017_extended  /  starov2017_xhound+  [D] starov2017_extended  /  starov2017_xhound   first author: SAME (Starov, Oleksii | Starov, Oleksii)
        2017 Extended Tracking Powers: Measuring the Privacy Diffusion Enabled by Browser Extensions        2017 Extended Tracking Powers: Measuring the Privacy Diffusion Enabled by Browser Extensions
        2017 XHOUND: Quantifying the Fingerprintability of Browser Extensions        2017 XHOUND: Quantifying the Fingerprintability of Browser Extensions
-  [D] tang2025_misuse  /  tang2025_navigating+  [D] tang2025_misuse  /  tang2025_navigating   first author: differs (Tang, Jenny | Tang, Brian)
        2025 Misuse, Misreporting, Misinterpretation of Statistical Methods in Usable Privacy and Security Papers        2025 Misuse, Misreporting, Misinterpretation of Statistical Methods in Usable Privacy and Security Papers
        2025 Navigating Cookie Consent Violations Across the Globe        2025 Navigating Cookie Consent Violations Across the Globe
-  [D] utz2023_comparing  /  utz2023_rarely+  [D] utz2023_comparing  /  utz2023_rarely   first author: SAME (Utz, Christine | Utz, Christine)
        2023 Comparing Large-Scale Privacy and Security Notifications        2023 Comparing Large-Scale Privacy and Security Notifications
        2023 Privacy Rarely Considered: Exploring Considerations in the Adoption of Third-Party Services by Websi        2023 Privacy Rarely Considered: Exploring Considerations in the Adoption of Third-Party Services by Websi
-  [D] vastel2018_scanner  /  vastel2018_stalker+  [D] vastel2018_scanner  /  vastel2018_stalker   first author: SAME (Vastel, Antoine | Vastel, Antoine)
        2018 Fp-Scanner: The Privacy Implications of Browser Fingerprint Inconsistencies        2018 Fp-Scanner: The Privacy Implications of Browser Fingerprint Inconsistencies
        2018 FP-STALKER: Tracking Browser Fingerprint Evolutions        2018 FP-STALKER: Tracking Browser Fingerprint Evolutions
-  [D] vekaria2025_bighelp  /  vekaria2025_soktracking+  [D] vekaria2025_bighelp  /  vekaria2025_soktracking   first author: SAME (Vekaria, Yash | Vekaria, Yash)
        2025 Big Help or Big Brother? Auditing Tracking, Profiling, and Personalization in Generative AI Assistan        2025 Big Help or Big Brother? Auditing Tracking, Profiling, and Personalization in Generative AI Assistan
        2025 SoK: Advances and Open Problems in Web Tracking        2025 SoK: Advances and Open Problems in Web Tracking
-  [D] venkatadri2019_auditing  /  venkatadri2019_investigating+  [D] venkatadri2019_auditing  /  venkatadri2019_investigating   first author: SAME (Venkatadri, Giridhari | Venkatadri, Giridhari)
        2019 Auditing Offline Data Brokers via Facebook's Advertising Platform        2019 Auditing Offline Data Brokers via Facebook's Advertising Platform
        2019 Investigating sources of PII used in Facebook’s targeted advertising        2019 Investigating sources of PII used in Facebook’s targeted advertising
-  [D] wang2026_masks  /  wang2026_sipconfusion+  [D] wang2026_masks  /  wang2026_sipconfusion   first author: differs (Wang, Weihong | Wang, Qi)
        2026 The Masks We (Think We) Wear: Privacy Threats of Browser-Extension Wallets in the Web3 Ecosystem        2026 The Masks We (Think We) Wear: Privacy Threats of Browser-Extension Wallets in the Web3 Ecosystem
        2026 SIPConfusion: Exploiting SIP Semantic Ambiguities for Caller ID and SMS Spoofing        2026 SIPConfusion: Exploiting SIP Semantic Ambiguities for Caller ID and SMS Spoofing
-  [D] wu2025_appprivacyreport  /  wu2025_revealing+  [D] wu2025_appprivacyreport  /  wu2025_revealing   first author: differs (Wu, Xiaoyuan | Wu, Mengying)
        2025 Transparency or Information Overload? Evaluating Users’ Comprehension and Perceptions of the iOS App        2025 Transparency or Information Overload? Evaluating Users’ Comprehension and Perceptions of the iOS App
        2025 Revealing the Black Box of Device Search Engine: Scanning Assets, Strategies, and Ethical Considerat        2025 Revealing the Black Box of Device Search Engine: Scanning Assets, Strategies, and Ethical Considerat
-  [D] wu2026_email  /  wu2026_tracking+  [D] wu2026_email  /  wu2026_tracking   first author: differs (Wu, Mengying | Wu, Wenhao)
        2026 One Email, Many Faces: A Deep Dive into Identity Confusion in Email Aliases        2026 One Email, Many Faces: A Deep Dive into Identity Confusion in Email Aliases
        2026 Tracking the Stray Sheep: Understanding DNS Response Manipulation in the Wild        2026 Tracking the Stray Sheep: Understanding DNS Response Manipulation in the Wild
-  [D] xie2024_arcanum  /  xie2024_crawling+  [D] xie2024_arcanum  /  xie2024_crawling   first author: SAME (Xie, Qinge | Xie, Qinge)
        2024 Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Conte        2024 Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Conte
        2024 Crawling to the Top: An Empirical Evaluation of Top List Use        2024 Crawling to the Top: An Empirical Evaluation of Top List Use
-  [D] yang2022_extensive  /  yang2022_wtagraph+  [D] yang2022_extensive  /  yang2022_wtagraph   first author: differs (Yang, Mingshuo | Yang, Zhiju)
        2022 An Extensive Study of Residential Proxies in China        2022 An Extensive Study of Residential Proxies in China
        2022 WTAGRAPH: Web Tracking and Advertising Detection using Graph Neural Networks        2022 WTAGRAPH: Web Tracking and Advertising Detection using Graph Neural Networks
-  [D] zhang2022_harpo  /  zhang2022_spartacus+  [D] zhang2022_harpo  /  zhang2022_spartacus   first author: differs (Zhang, Jiang | Zhang, Penghui)
        2022 HARPO: Learning to Subvert Online Behavioral Advertising        2022 HARPO: Learning to Subvert Online Behavioral Advertising
        2022 I'm SPARTACUS, No, I'm SPARTACUS: Proactively Protecting Users from Phishing by Intentionally Trigge        2022 I'm SPARTACUS, No, I'm SPARTACUS: Proactively Protecting Users from Phishing by Intentionally Trigge
-  [D] zhang2024_inbox  /  zhang2024_quic+  [D] zhang2024_inbox  /  zhang2024_quic   first author: differs (Zhang, Jiahe | Zhang, Xumiao)
        2024 Inbox Invasion: Exploiting MIME Ambiguities to Evade Email Attachment Detectors        2024 Inbox Invasion: Exploiting MIME Ambiguities to Evade Email Attachment Detectors
        2024 QUIC is not Quick Enough over Fast Internet        2024 QUIC is not Quick Enough over Fast Internet
-  [D] zhang2025_abusability  /  zhang2025_qrcode+  [D] zhang2025_abusability  /  zhang2025_qrcode   first author: differs (Zhang, Shirley | Zhang, Xin)
        2025 Abusability of Automation Apps in Intimate Partner Violence        2025 Abusability of Automation Apps in Intimate Partner Violence
        2025 Demystifying the (In)Security of {QR} Code-based Login in Real-world Deployments        2025 Demystifying the (In)Security of {QR} Code-based Login in Real-world Deployments
-  [D] zhu2020_label  /  zhu2020_vtset+  [D] zhu2020_label  /  zhu2020_vtset   first author: SAME (Zhu, Shuofei | Zhu, Shuofei)
        2020 Measuring and Modeling the Label Dynamics of Online Anti-Malware Engines        2020 Measuring and Modeling the Label Dynamics of Online Anti-Malware Engines
        2020 Demo: Benchmarking Label Dynamics of VirusTotal Engines        2020 Demo: Benchmarking Label Dynamics of VirusTotal Engines
 +
 +candidates whose first-author string is identical on both sides: 31 of 58; different first author (shared surname, or a non-person 'author'): 27
 </code> </code>
  
Line 3521: Line 3569:
     for k, n in sorted(unresolved_after.items()):     for k, n in sorted(unresolved_after.items()):
         print(f"  {k}  ({n} page(s))")         print(f"  {k}  ({n} page(s))")
 +    # The per-key counts above overlap: one page can carry several example
 +    # strings. The number of DISTINCT pages carrying any of them is what the
 +    # provenance page quotes, so print it rather than leave it to be summed.
 +    union = set()
 +    for f in files:
 +        text = changed[pid(f)][0] if pid(f) in changed else open(f, encoding="utf-8").read()
 +        for m in MARKER.finditer(text):
 +            if any(k.strip() in unresolved_after for k in m.group(1).split(",")):
 +                union.add(pid(f))
 +    print(f"distinct pages carrying any such example marker, AFTER: {len(union)}")
     assert set(unresolved_after) == set(unresolved_before), "the rewrite created an unresolved key"     assert set(unresolved_after) == set(unresolved_before), "the rewrite created an unresolved key"
  
Line 3712: Line 3770:
 ==== Second sitting, 2026-09-04: citekey consolidation ==== ==== Second sitting, 2026-09-04: citekey consolidation ====
  
-Three focused review passes (Sonnetfigures vs script; Sonnetcitations and +Three focused passes ran against the frozen draft of this section, each handed 
-claims; Sonnet: external currencywere launched against this frozen draft on +the page text, the scripts, their committed outputs, the 21 saved files and the 
-2026-09-04 with the scripts, their outputs and the 21 saved files. The run had +rendered before/after HTML, and told the author's context might not be 
-to close before their findings arrived, so this section was published **before +exhaustive. The section was **first published before their findings arrived** 
-any reviewer finding was incorporated** and no Fable generic pass has run+(revision 1788543550, with a line saying so); the findings below were then 
-Incorporating the findingsrunning the generic pass and recording each +applied and the page re-saved. A follow-up item 
-disposition here is the follow-up drain item ''dedup-bibkey-review-followup''+''dedup-bibkey-review-followup'' was filed at the first save for exactly this 
-Until then, every figure in this second-sitting audit is script output that +work and is overtaken by it. 
-has been re-derived once by the author and not yet independently re-run.+ 
 +^ Reviewer ^ Finding ^ Disposition ^ 
 +Sonnet — figures vs script | "18 pages" carry a literal example marker: that is the count for the ''key'' string alonethe union over all four strings is **20** (''citekey'' adds ''provenance:statistics:interrater_agreement'', ''...'' adds ''provenance:artifacts'') | **Accepted.** ''bib_dedup_apply.py'' now prints the distinct-page union; prose says 20 and names the mistake | 
 +Sonnet — figures vs script | "Fifty-four are one first author with two or three papers in one year" is wrong for about half28 pairs share a first-author string, 26 are different people sharing a surname (Zhenhua Li / Frank Li / Li Li, Jiang Zhang / Penghui Zhang …| **Accepted; the finding of this review.** ''bib_dedup_scan.py'' now prints both first-author strings on every candidate row and the same/different split (31 of 58 identical, of which 3 are DuckDuckGo; 27 differ, of which 1 is Bratton/Sumner). Prose rewritten to 28 / 26 and to say that this class is what a surname fold necessarily produces | 
 +| Sonnet — figures vs script | The first sitting filed the work as ''dedupe-bibliography-entries''; the new text credits ''dedup-regional-filter-lists-bibkey'' and describes it as raised 2026-08-14 for a narrower reason, without reconciling the two | **Accepted.** The "Closed later the same day" paragraph now explains that the 2026-08-14 item already included "check for other duplicate pairs"so it covered the filed work, and says plainly that the older item should be closed as superseded and that this run could not close it | 
 +| Sonnet — figures vs script | All five scripts reproduce their committed outputs byte for byte; embedded ''%%<file>%%'' bodies byte-identical to disk; the five-row table, 19/4/2, 23/13/20/21/10/26/58, 855→850 and both revision numbers verified; umlaut fold tested on four spellings; marker regex misses no real marker (9 near-misses are code fragments in ''%%<code>%%'' blocks); two mutations (deleting a MERGES pair; disabling the distinct-key assert and injecting a both-keys marker) both change the outcome; live bibliography has 850 entries and none of the deleted keys; three live repointed pages carry no deleted key in a marker | Verified, no change | 
 +| Sonnet — citations and claims | All ten entries of the five pairs read: same paper, author lists identical including order; every "what was dropped" cell correct. Independent marker-resolution check over the 21 saved files and this page: zero unresolved beyond the documented example tokens. 1723–1739 confirmed from cached and fresh USENIX fetch. 2026-08-14 discovery note found verbatim on ''provenance:programming:crawler:openwpm''. "No page cited both keys", 26 prose pages (identical per-page lists), 19/25 (8 fields spot-checked; the two ''dropped'' cases traced to ''bibgen.mjs'' line 110), "three of five without underscore; fouad2022my 4 vs 2" all recomputed. All 21 diffs are marker substitutions only. 10 of 58 candidates read: distinct papers | Verified, no change. The reviewer reported two false alarms of its own (an ''endswith'' filter that excluded this page from a count; a ''grep -A15'' spilling into the next entry) and resolved both itself | 
 +| Sonnet — external currency | DOIs 10.56553/popets-2022-0063, -2025-0063, -2026-0109 resolve (200) to pages whose ''citation_title''/''citation_author'' match the kept entries in order; all in the 10.56553 range. Böttger volume 2025 / issue 2 / pages 309–325 match ''petsymposium.org'' byte for byte. Both USENIX pages return 200 with identical ''citation_author'' lists; ''pages = {1723--1739}'' confirmed from USENIX's BibTeX and meta; no ''citation_doi'' on either, so "no DOI" is current | Verified, no change | 
 + 
 +Then the generic pass, with no checklist, after those fixes were applied. 
 + 
 +^ Reviewer ^ Finding ^ Disposition ^ 
 +| Fable — generic | The second sitting's "what could not be established" and "judgement calls" precede the first sitting's, which are unlabelled, so a reader meets the closers out of order | **Accepted**, by labelling the two older sections //first sitting// rather than moving 400 lines | 
 +| Fable — generic | "161 other pages" here against "160" in the first sitting — both true, neither explained; the first sitting's own review log had already closed a 160-vs-161 finding **Accepted.** This page did not exist when the earlier count was taken; that is now said where the 161 appears | 
 +| Fable — generic | "First revision of this page" and "every figure below is against that snapshot" (837 entries) are made false by the second-sitting bullet directly beneath them | **Accepted.** Both scoped to the first sitting | 
 +Fable — generic | The tie-break rule is stated as "first title word", but ''autoKey'' takes the first word over three letters **not in its ''STOP'' list** — and ''Understanding'' is in ''STOP''. Under the rule as written, two of the five kept keys would be wrong | **Accepted; the best finding of this pass.** The whole tie-break rests on "the convention is what ''bibgen.mjs'' mints", so stating a rule that does not mint the kept keys undercut it. The real rule is now given, with ''bottger2025_regional'' as the worked example | 
 +| Fable — generic | Three rows of the rendered check sit one below the apply table's distinct-key countunexplained: those pages carry a documentation example written as a real marker, so ''bib_dedup_apply.py'' counts a template marker as a citation | **Accepted as a disclosure, rejected as a code change.** The paragraph now names the three pages and the cause, and says the inflation cannot touch the consolidation. Teaching the marker regex to skip instruction lines would change a number nothing depends on, in a script whose output is already published | 
 +| Fable — generic | "26 are different people … including one spelling variant of a single person" contradicts itself | **Accepted.** Now 25 different people and one person spelled two ways | 
 +| Fable — generic | The headline row describes only the surname rule, though the 58 candidates include a title match and the scan also ran on the 850-entry file | **Accepted.** The row now names all four rules and both files | 
 +| Fable — generic | 13 changed + 10 amended is stated as 20 pages and 21 files without saying three pages are in both sets | **Accepted.** One clause added | 
 +| Fable — generic | "all ten were typed by hand" is an inference: ''autoKey'' has a no-authors path that derives a surname from ''landingUrl'', and callers can pass ''--key'' | **Accepted.** Softened to what the evidence supports — none can have been minted from an author list | 
 +| Fable — generic | The 19-of-25 census runs on the 855-entry file, so it counts the Böttger paper twice; after the save it is 19 of 24 | **Accepted.** Labelled, with both figures | 
 +| Fable — generic | Both reviewer corrections are narrated in the body and again in the review log | **Accepted.** Cut from the body; the log is the right place | 
 +| Fable — generic | "''bouhoula2024_automated'' alone is on 11. so no reference list…" — a lowercase sentence start, pre-existing | **Accepted**, fixed in passing | 
 +| Fable — generic | DokuWiki syntax checked: no literal closing tag inside the four new ''%%<file>%%'' blocks, WRAP balanced, ''%%'' spans even, no pipe in a table cell; every number in the new prose matches the committed outputs | Verified, no change |
  
 ====== References ====== ====== References ======
provenance/literature/bibliography.txt · Last modified: by karel.kubicek.claude

Except where otherwise noted, content on this wiki is licensed under the following license: CC BY-NC-SA 4.0
CC BY-NC-SA 4.0 Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki