4 papers
VERCATION: Precise Vulnerable Open-source Software Version Identification based on Static Analysis and LLM
Yiran Cheng, Ting Zhang, Lwin Khin Shar +6
Open-source software (OSS) has experienced a surge in popularity, attributed to its collaborative development model and cost-effective nature. However, the adoption of specific sof…
Fixseeker: An Empirical Driven Graph-based Approach for Detecting Silent Vulnerability Fixes in Open Source Software
Yiran Cheng, Ting Zhang, Lwin Khin Shar +6
Open source software vulnerabilities pose significant security risks to downstream applications. While vulnerability databases provide valuable information for mitigation, many sec…
Towards Reliable LLM-Driven Fuzz Testing: Vision and Road Ahead
Yiran Cheng, Hong Jin Kang, Lwin Khin Shar +4
Fuzz testing is a crucial component of software security assessment, yet its effectiveness heavily relies on valid fuzz drivers and diverse seed inputs. Recent advancements in Larg…
HoneyGPT: Breaking the Trilemma in Terminal Honeypots with Large Language Model
Ziyang Wang, Jianzhou You, Haining Wang +4
Honeypots, as a strategic cyber-deception mechanism designed to emulate authentic interactions and bait unauthorized entities, often struggle with balancing flexibility, interactio…