2 papers
cs.CR2025
BACFuzz: Exposing the Silence on Broken Access Control Vulnerabilities in Web Applications
I Putu Arya Dharmaadi, Mohannad Alhanahnah, Van-Thuan Pham +2
Broken Access Control (BAC) remains one of the most critical and widespread vulnerabilities in web applications, allowing attackers to access unauthorized resources or perform priv…
cs.SE2025
AFLNet Five Years Later: On Coverage-Guided Protocol Fuzzing
Ruijie Meng, Van-Thuan Pham, Marcel Böhme +1
Protocol implementations are stateful which makes them difficult to test: Sending the same test input message twice might yield a different response every time. Our proposal to con…