activity
20232026
most citedFrom CVE Entries to Verifiable Exploits: An Automated Multi-Agent Framework for Reproducing CVEs

2 citations · 5 across the 11 of their papers we have counts for

collaborators
Showing cs.CRShow all

9 papers · 1 filter

cs.CR2026

A SoK for SoCs: Reading the TI Leaves on AI for Cyber Threat Intelligence Generation and Sharing

Saastha Vasan, Hadjer Benkraouda, Jizhou Chen +8

Cyber Threat Intelligence (CTI) is essential for defending mission-critical infrastructure, yet the process of transforming raw attack evidence into shareable CTI remains fragmente…

cs.CR2026

From Documentation to Zero-day Vulnerabilities: LLM-Driven Fuzzing of JavaScript Engines in PDF Readers

Suyue Guo, Stijn Pletinckx, Tianle Yu +5

Existing fuzzers for PDF readers rely on simple test cases that involve only individual API calls, leading to limited coverage and potentially missing vulnerabilities that require…

cs.CR2026

SeedSmith: LLM-Driven Seed Synthesis for Directed Fuzzing

Junmin Zhu, Siyu Liu, Jie Hu +7

Directed fuzzing steers fuzzers toward user-defined sink functions to identify vulnerabilities, but it frequently fails to trigger crashes even after long campaigns. We identify tw…

cs.CR2026

MalwarePT: A Binary-Level Foundation Model for Malware Analysis

Saastha Vasan, Yuzhou Nie, Kaie Chen +6

Automated malware analysis increasingly relies on machine learning, yet most existing methods remain task-specific and depend on handcrafted features or narrowly scoped models. Rec…

cs.CR2026

Multi-Agent Taint Specification Extraction for Vulnerability Detection

Jonah Ghebremichael, Saastha Vasan, Saad Ullah +6

Static Application Security Testing (SAST) tools using taint analysis are widely viewed as providing higher-quality vulnerability detection results compared to traditional pattern-…

cs.CR2025

When AI Meets the Web: Prompt Injection Risks in Third-Party AI Chatbot Plugins

Yigitcan Kaya, Anton Landerer, Stijn Pletinckx +3

Prompt injection attacks pose a critical threat to large language models (LLMs), with prior work focusing on cutting-edge LLM applications like personal copilots. In contrast, simp…