David Korczynski's Avatar

David Korczynski

@davkor.bsky.social

Software security with a heavy focus on fuzzing and program analysis. Researcher at Ada Logics

43 Followers  |  37 Following  |  4 Posts  |  Joined: 23.10.2024  |  1.4174

Latest posts by davkor.bsky.social on Bluesky

OSS-Fuzz integrations via agent-based build generation OSS-Fuzz integrations via agent-based build generation.

Automating OSS-Fuzz integrations using an agentic approach to build generation: blog.oss-fuzz.com/posts/oss-fu...

Fuzzing at scale requires a solution for build script generation, and an LLM-based agentic approach looks promising for this. It too works well with OFG's harness gen capabilities 🀟

27.05.2025 08:06 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

We’re hiring Vulnerability Researchers at @infosectcbr.bsky.social that specialise in Linux, OS kernels, Android, and embedded/IoT. With a world class hardware lab, come join our friendly and collaborative team, focusing on research against leading technologies. DM for details.

30.04.2025 08:05 β€” πŸ‘ 6    πŸ” 2    πŸ’¬ 0    πŸ“Œ 1
Post image

Awesome job by my PhD student @gabriel-sherman.bsky.social presenting his work on Oracle-guided C Fuzzing Harness Generation! @icseconf.bsky.social

TLDR; 41 new bugs (40 now patched)... with 0 false positives!

30.04.2025 16:15 β€” πŸ‘ 8    πŸ” 1    πŸ’¬ 1    πŸ“Œ 0
Preview
GoLibAFL β€” Fuzzing Go binaries using LibAFL Nils Ollrogge, Bruno Produit

Using #LibAFL to fuzz @golang.org binaries with a proper modern fuzzer πŸ“ˆπŸ“ˆ

Super cool stuff by @srlabs.bsky.social

www.srlabs.de/blog-post/go...

16.04.2025 12:28 β€” πŸ‘ 14    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0

Slava Ukraini πŸ‡ΊπŸ‡¦

28.02.2025 18:20 β€” πŸ‘ 35051    πŸ” 4574    πŸ’¬ 402    πŸ“Œ 97
Post image

#FUZZING'25 CALL FOR PAPERS
──────
✨ New OC members:
* Ruijie Meng (@ruijiemeng.bsky.social; NUS)
* Rohan Padhye (@rohan.padhye.org; CMU).
✨ New paper type: Fuzzing Nuggets (short papers).

πŸ”— fuzzingworkshop.github.io
πŸ“… 20.March (Submission)
πŸ“… 17.April (Notification)
πŸ“… 28.June (Workshop)

17.02.2025 18:40 β€” πŸ‘ 18    πŸ” 11    πŸ’¬ 1    πŸ“Œ 0
Minimal LLM-based fuzz harness generator

Auto generating #fuzzing harnesses by way of program analysis and #LLMs! New blog post "Minimal LLM-based fuzz harness generator": adalogics.com/blog/minimal...

We show how you can generate a sophisticated fuzz harness synthesis tool with a few lines of code.

18.02.2025 12:46 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Yeah, it's relatively new -- we've worked 2-3 months on it from starting with tree-sitter, but have made good strides. FI already supports C/C++/Rust/golang and java. Mileage may vary between languages, but we're going to try and see how far tree-sitter can get us. More posts coming up shortly!

15.02.2025 23:07 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

TIL Fuzz Introspector has moved to tree-sitter and a Python library. Cool!

15.02.2025 01:42 β€” πŸ‘ 5    πŸ” 2    πŸ’¬ 1    πŸ“Œ 0
Fuzz Introspector: enabling rapid fuzz introspection tool development

"Fuzz Introspector: enabling rapid fuzz introspection tool development" -- a new blog post on Fuzz Introspector and how it is moving into supporting analysis as a pure python library. #fuzzing #program-analysis See the blog post: adalogics.com/blog/fuzz-in...

14.02.2025 13:07 β€” πŸ‘ 3    πŸ” 1    πŸ’¬ 0    πŸ“Œ 1
The Virtue of Simplicity On January 24, 2025, I was invited to give a commencement speech for the graduates of Passau University. My speech focused on the β€œvirtue of simplicity”, reflecting on the role of simplicity in scienc...

Yesterday, I gave a commencement speech for the graduates of #Passau University. "The virtue of simplicity" reflected on the role of simplicity in science, both personal and universal, and how it is important for the future career of graduates. Enjoy! andreas-zeller.info/2025/01/25/T...

25.01.2025 07:38 β€” πŸ‘ 13    πŸ” 2    πŸ’¬ 1    πŸ“Œ 0
Senior Security Engineer, Security Research β€” Google Careers

Project Zero is hiring πŸ‘€
No need to tell y'all that the team is awesome

08.01.2025 10:23 β€” πŸ‘ 47    πŸ” 20    πŸ’¬ 0    πŸ“Œ 0

β€œAFLNet Five Years Later: On Coverage-Guided Protocol Fuzzing”

A look back at the last five years since the release of AFLNet, β€œthe first code- and state-coverage-guided protocol fuzzer.”

arxiv.org/abs/2412.20324

03.01.2025 03:08 β€” πŸ‘ 9    πŸ” 4    πŸ’¬ 0    πŸ“Œ 0

@davkor is following 20 prominent accounts