Showing cs.CRShow all
2 papers · 1 filter
cs.CR2026
No-Box Vulnerability Analysis: Description-only Detection of Indirect Prompt Injection Vulnerabilities in MCP Servers
Zehua Zhang, Jie Hu, Pratham Hegde +14
Conventional vulnerability analysis relies on either system access or dynamic interaction, all of which may be unavailable to third-party analysts auditing closed-source, remotely…
cs.CR2026
Root-Cause-Driven Automated Vulnerability Repair
Hulin Wang, Zion Leonahenahe Basque, Jie Hu +13
Recent LLM-based systems have made automated vulnerability repair increasingly practical, but two challenges remain. First, without strong signals about where a bug originates, rep…