34 citations · 75 across the 12 of their papers we have counts for
7 papers · 1 filter
No Attack Required: Semantic Fuzzing for Specification Violations in Agent Skills
Ying Li, Hongbo Wen, Yanju Chen +3
LLM-powered agents can silently delete documents, leak credentials, or transfer funds on a routine user request, not because the agent was attacked, but because the skill it invoke…
Options, Not Clicks: Lattice Refinement for Consent-Driven MCP Authorization
Ying Li, Yanju Chen, Peiran Wang +4
As Model Context Protocol adoption grows, securing tool invocations via meaningful user consent has become a critical challenge, as existing methods, broad always allow toggles or…
Certifying Zero-Knowledge Circuits with Refinement Types
Junrui Liu, Ian Kretz, Hanzhi Liu +7
Zero-knowledge (ZK) proof systems have emerged as a promising solution for building security-sensitive applications. However, bugs in ZK applications are extremely difficult to det…
Cerberus: Query-driven Scalable Vulnerability Detection in OAuth Service Provider Implementations
Tamjid Al Rahat, Yu Feng, Yuan Tian
OAuth protocols have been widely adopted to simplify user authentication and service authorization for third-party applications. However, little effort has been devoted to automati…
SAILFISH: Vetting Smart Contract State-Inconsistency Bugs in Seconds
Priyanka Bose, Dipanjan Das, Yanju Chen +3
This paper presents SAILFISH, a scalable system for automatically finding state-inconsistency bugs in smart contracts. To make the analysis tractable, we introduce a hybrid approac…
Precise Attack Synthesis for Smart Contracts
Yu Feng, Emina Torlak, Rastislav Bodik
Smart contracts are programs running on top of blockchain platforms. They interact with each other through well-defined interfaces to perform financial transactions in a distribute…