All Stories

  1. Top of the Heap: Efficient Memory Error Protection of Safe Heap Objects
  2. Fuzzing JavaScript Engines with a Graph-based IR
  3. Gradient: Gradual Compartmentalization via Object Capabilities Tracked in Types
  4. Tango: Extracting Higher-Order Feedback through State Inference
  5. SyzRisk: A Change-Pattern-Based Continuous Kernel Regression Fuzzer
  6. TuneFuzz: Adaptively Exploring Target Programs
  7. Crystallizer: A Hybrid Path Analysis Framework to Aid in Uncovering Deserialization Vulnerabilities
  8. DatAFLow : Toward a Data-Flow-Guided Fuzzer
  9. DatAFLow : Toward a Data-flow-guided Fuzzer
  10. Fuzzing binaries using dynamic control flow analysis
  11. Creating Trust by Abolishing Hierarchies
  12. Imprecise Store Exceptions
  13. One Fuzz Doesn’t Fit All: Optimizing Directed Fuzzing via Target-tailored Program State Restriction
  14. Designing a Provenance Analysis for SGX Enclaves
  15. PACMem
  16. Minerva: browser API fuzzing with dynamic mod-ref analysis
  17. Evocatio
  18. Automatically deduplicating program crashes by test case simplification and root-cause clustering
  19. μSCOPE: A Methodology for Analyzing Least-Privilege Compartmentalization in Large Software Artifacts
  20. Seed selection for successful fuzzing
  21. Gramatron: effective grammar-aware fuzzing
  22. Magma: A Ground-Truth Fuzzing Benchmark
  23. Rebooting Virtual Memory with Midgard
  24. Magma: A Ground-Truth Fuzzing Benchmark
  25. Too Quiet in the Library: An Empirical Study of Security Updates in Android Apps' Native Code
  26. Too Quiet in the Library: An Empirical Study of Security Updates in Android Apps’ Native Code
  27. Code Specialization through Dynamic Feature Observation
  28. Enclosure: language-based restriction of untrusted libraries
  29. Magma
  30. SMoTherSpectre
  31. PoLPer
  32. Milkomeda
  33. Block Oriented Programming
  34. HexType
  35. Enforcing Least Privilege Memory Views for Multithreaded Applications
  36. TypeSan