?I wonder how you would feel and respond, as a reviewer, if you saw 3β4 papers submitted to the same conference that target the same problem from slightly different angles, with slightly varied problem statements, but ultimately use almost identical solutions (e.g., using LLMs as a magic wand)?
15.07.2025 12:16 β π 0 π 0 π¬ 0 π 0
β¨οΈ Now that #ICSE25 is over, it's time to get your papers ready for #ASE25 (30th May)!
π’ Here is what's new:
* Major Revision v2.0
* Review criteria for tech. & experience papers
* Policy on LLM-assisted Reviews
* Auto-bidding (TPMS)
* Rapid Response Reliable Reviewers
π For more details, read on.
03.05.2025 14:25 β π 26 π 14 π¬ 1 π 0
I think Atropos is built on the key ideas from Redqueen & kAFL/Nyx in which the "spec" is quite different from OpenAPI spec. Moreover, the way that TrailBlazer supports generation & mutation-based fuzzing is quite different too. Hopefully, they, along with other tools, give developers more options.
20.04.2025 00:19 β π 1 π 0 π¬ 0 π 0
TrailBlazer infers OpenAPI spec and leverage the spec together with the captured traffic, which is *attached* to the inferred spec, to do both generation & mutation based fuzzing. Moreover, current version of TrailBlazer is black-box so it is not language dependent. Feedback guided is our next step.
18.04.2025 02:28 β π 1 π 0 π¬ 1 π 0
π Excited to share our paper "Trailblazer: Practical End-to-End Web API Fuzzing (Registered Report)" was accepted to the Fuzzing Workshop 2025! It's the final piece from Lianglu Pan's thesis, co-advised by @shaananc.bsky.social , @tobycmurray.bsky.social, and me. See you in Trondheim this June! π³π΄
17.04.2025 23:13 β π 8 π 0 π¬ 1 π 0
YouTube video by Don Woodlock
Using Agentic AI to create smarter solutions with multiple LLMs (step-by-step process)
This is the best explanation of agentic AI that I have ever seen. Simple but to the point. Highly recommended: youtu.be/O0GNrvO7wD0?...
01.04.2025 20:51 β π 0 π 0 π¬ 0 π 0
An iPad with the QUIC-Fuzz paper
Saturday morning read: βQUIC-Fuzz: An Effective Greybox Fuzzer For The QUIC Protocolβ
arxiv.org/abs/2503.19402
29.03.2025 00:09 β π 12 π 3 π¬ 0 π 0
Re-sharing to keep bluesky rolling
go.bsky.app/EhGFSVj
24.12.2024 00:13 β π 45 π 13 π¬ 0 π 3
We reflect on the 5-year impact of our protocol fuzzer #AFLNet on research & practice in this journal extension *just accepted* at the Transactions on Software Engineering.
πhttps://mpi-softsec.github.io/papers/TSE25-aflnet.pdf
π§βπ»https://github.com/aflnet/aflnet
Led by Ruijie and Thuan, w/ Abhik
22.01.2025 14:04 β π 8 π 2 π¬ 1 π 0
futures.cs.utah.edu/papers/25ICS... by @snagycs.bsky.social and @gabriel-sherman.bsky.social Seems like a very sensible approach to harness generation with some impressive results. I'm looking forward to seeing more discussion about this approach :) (sorry for blatantly copying the twitter thing).
18.03.2025 03:13 β π 11 π 1 π¬ 0 π 0
CS PhD Student@HKUST | Program Analysis
https://sjyao.net
PhD student @ncstate.bsky.social, software security
Software Engineer (on the job market) | PhD in Computer Science
https://laaber.net
πͺπΊπ§πͺ Permanent researcher in cybersecurity (fuzzing).
Works at CEA List Institute from UniversitΓ© Paris-Saclay (France).
http://www.marcozzi.net
I make software safer by viciously torturing it to reveal its flaws.
I can be kind too.
CS PhD Student at National University of Singapore. Automatic programming, automated program repair, software security.
"I'm interested in all kinds of astronomy."
https://scrapco.de
Mostly cross-posting from Fediverse: @buherator@infosec.place
fuzzing enjoyer
@novafacing@haunted.computer
Security @Google, Personal Account.
Cyber Response Italian Supercazzola Technology Officer at
@mhackeroni Inc. Writing your favourite fuzz testing tools with
@aflplusplus. Security research at ο£Ώ.
melee, cybersecurity, leftism
Privacy Researcher based in GΓΆttingen, Germany, previously working on Kernel Fuzzing @ TU Darmstadt.
Vulnerability researcher | Fuzzing | Anything low-level excites me | Admin @ https://0x00sec.org | My tweets are my own | Blog: https://0x434b.dev
Security Engineer @ Cloudflare,
ex-Google ISE,
I use bad software and bad machines for the wrong things.
My writing: https://carstein.github.io
ΙΏΙΙniΟ±nΙ ΙΖ¨ΙΏΙvΙΙΏ
π¦ youtube.com/@jiskac
π naehrdine.blogspot.com
π₯ twitter.com/naehrdine
π hpi.de/classen
π± reversing.training
wannabe hacker... he/him
π± grow your hacking skills https://hextree.io
CTF player for ENOFLAG and PHD student at TU Berlin
Firmware Security β’ Embedded Systems β’ AI x Infosec β’
Researcher @binarly β’ PhD Candidate @TUBerlin β’
Capturing Flags with ENOFLAG
Berlin. Does things with computers and phones.