0

Prism: A Multi-Team Orchestration of LLM Agents for Automatic Program Repair

Automatic Program Repair (APR) has emerged as a critical technology for autonomously addressing software vulnerabilities. While recent advances in Large Language Models (LLMs) have enabled sophisticated agentic APR systems, existing approaches still …

QueryHouse: Cross-DBMS Differential Testing with LLM and Query Transpilation

CTFusion: A CTF-based Benchmark for LLM Agent Evaluation

Recent advances in Large Language Models (LLMs) have enabled agentic systems for complex, multi-step tasks; cybersecurity is emerging as a prominent application. To evaluate such agents, researchers widely adopt Capture The Flag (CTF) benchmarks. …

Function-Level Fuzzing for RTOS Kernels with RTCon

Real-Time Operating Systems (RTOS) are widely used in embedded systems to support functionalities such as Bluetooth and Wi-Fi. As RTOS kernels grow in functionality, their attack surface also expands, increasing the need for effective security …

RTCon: Context-Adaptive Function-Level Fuzzing for RTOS Kernels

Real-Time Operating System (RTOS) is widely used in embedded systems with its various subsystems such as Bluetooth and Wi-Fi. As its functionalities grow, its attack surface also expands, exposing it to more security threats. To address this, dynamic …

OTABase: Enhancing Over-the-Air Testing to Detect Memory Crashes in Cellular Basebands

Bridging the Gap between Real-World and Formal Binary Lifting through Filtered-Simulation

CROSS-X: Generalized and Stable Cross-Cache Attack on the Linux Kernel

The cross-cache attack is a fundamental component of modern Linux kernel exploits, spanning real-world attacks and recent research. Despite its importance, it is often regarded as unreliable due to its complex setup, and existing studies lack …

Windows plays Jenga: Uncovering Design Weaknesses in Windows File System Security

File systems are essential components of modern operating systems, with Windows being one of the most dominant platforms. Recently, a series of attacks have exploited the Windows file system to trigger serious security threats such as privilege …

ATLANTIS: AI-driven Threat Localization, Analysis, and Triage Intelligence System