4 papers
Toward Securing AI Agents Like Operating Systems
Lukas Pirch, Micha Horlboge, Patrick GroÃmann +4
Autonomous agents based on large language models (LLMs) are rapidly emerging as a general-purpose technology, with recent systems such as OpenClaw extending their capabilities thro…
ExploitGym: Can AI Agents Turn Security Vulnerabilities into Real Attacks?
Zhun Wang, Nico Schiller, Hongwei Li +13
AI agents are rapidly gaining capabilities that could significantly reshape cybersecurity, making rigorous evaluation urgent. A critical capability is exploitation: turning a vulne…
CCX: Enabling Unmodified Intel SGX Applications on Arm CCA
Matti Schulze, Thorsten Holz, Felix Freiling
Novel confidential computing technologies such as Intel TDX, AMD SEV, and Arm CCA have recently emerged. In practice, due to its minimal trust boundaries, Intel SGX still remains w…
Anota: Identifying Business Logic Vulnerabilities via Annotation-Based Sanitization
Meng Wang, Philipp Görz, Joschua Schilling +4
Detecting business logic vulnerabilities is a critical challenge in software security. These flaws come from mistakes in an application's design or implementation and allow attacke…