5 papers
Collaborative Zone-Adaptive Zero-Day Intrusion Detection for IoBT
Amirmohammad Pasdar, Shabnam Kasra Kermanshahi, Nour Moustafa +1
The Internet of Battlefield Things (IoBT) relies on heterogeneous, bandwidth-constrained, and intermittently connected tactical networks that face rapidly evolving cyber threats. I…
Following Dragons: Code Review-Guided Fuzzing
Viet Hoang Luu, Amirmohammad Pasdar, Wachiraphan Charoenwet +3
Modern fuzzers scale to large, real-world software but often fail to exercise the program states developers consider most fragile or security-critical. Such states are typically de…
UIXPOSE: Mobile Malware Detection via Intention-Behaviour Discrepancy Analysis
Amirmohammad Pasdar, Toby Murray, Van-Thuan Pham
We introduce UIXPOSE, a source-code-agnostic framework that operates on both compiled and open-source apps. This framework applies Intention Behaviour Alignment (IBA) to mobile mal…
BGPFuzz: Automated Configuration Fuzzing of the Border Gateway Protocol
Chenlu Zhang, Amirmohammad Pasdar, Van-Thuan Pham
Telecommunications networks rely on configurations to define routing behavior, especially in the Border Gateway Protocol (BGP), where misconfigurations can lead to severe outages a…
InsightQL: Advancing Human-Assisted Fuzzing with a Unified Code Database and Parameterized Query Interface
Wentao Gao, Renata Borovica-Gajic, Sang Kil Cha +2
Fuzzing is a highly effective automated testing method for uncovering software vulnerabilities. Despite advances in fuzzing techniques, such as coverage-guided greybox fuzzing, man…