3 papers
cs.CR2025
NIFuzz: Estimating Quantified Information Flow with a Fuzzer
Daniel Blackwell, Ingolf Becker, David Clark
This paper presents a scalable, practical approach to quantifying information leaks in software; these errors are often overlooked and downplayed, but can seriously compromise secu…
cs.SE2024
PrescientFuzz: A more effective exploration approach for grey-box fuzzing
Daniel Blackwell, David Clark
Since the advent of AFL, the use of mutational, feedback directed, grey-box fuzzers has become critical in the automated detection of security vulnerabilities. A great deal of rese…
cs.SE2021
HyperGI: Automated Detection and Repair of Information Flow Leakage
Ibrahim Mesecan, Daniel Blackwell, David Clark +2
Maintaining confidential information control in software is a persistent security problem where failure means secrets can be revealed via program behaviors. Information flow contro…