12 papers
Domain Decoupling Attack: Exploiting the Validation Gap Between Protective DNS and Shared Edge Routing
Weizhe Wang, Minhong Dong, Jinhao Li +6
Network attackers often conceal malicious communication within legitimate Internet traffic. Existing CDN-based evasion techniques rely on SNI--Host inconsistency, insufficient doma…
Graph-Aware Fuzzing for Graph Database Management Systems
Yu Li, Qiang Hu, Yao Zhang +4
Graph Database Management Systems (GDBMSs) are essential infrastructure for managing interconnected data. Existing GDBMS testing methods primarily rely on differential and metamorp…
Foundation Models for Autonomous Driving System: An Initial Roadmap
Xiongfei Wu, Mingfei Cheng, Xiaoning Ren +8
Recent advances in foundation models (FMs), including large language models (LLMs), vision-language models (VLMs), and world models, have opened new opportunities for autonomous dr…
Human in the Loop for Fuzz Testing: Literature Review and the Road Ahead
Jiongchi Yu, Xiaolin Wen, Sizhe Cheng +3
Fuzz testing is one of the most effective techniques for detecting bugs and vulnerabilities in software. However, as the basis of fuzz testing, automated heuristics often fail to u…
DynaTrust: Defending Multi-Agent Systems Against Sleeper Agents via Dynamic Trust Graphs
Yu Li, Qiang Hu, Yao Zhang +3
Large Language Model-based Multi-Agent Systems (MAS) have demonstrated remarkable collaborative reasoning capabilities but introduce new attack surfaces, such as the sleeper agent,…
Chimera: Harnessing Multi-Agent LLMs for Automatic Insider Threat Simulation
Jiongchi Yu, Xiaofei Xie, Qiang Hu +2
Insider threats pose a persistent and critical security risk, yet are notoriously difficult to detect in complex enterprise environments, where malicious actions are often hidden w…