Skip to main content

Showing 1–2 of 2 results for author: Amato, R N

Searching in archive cs. Search in all archives.
.
  1. arXiv:1807.09160  [pdf, other

    cs.SE

    Automatically Assessing Vulnerabilities Discovered by Compositional Analysis

    Authors: Saahil Ognawala, Ricardo Nales Amato, Alexander Pretschner, Pooja Kulkarni

    Abstract: Testing is the most widely employed method to find vulnerabilities in real-world software programs. Compositional analysis, based on symbolic execution, is an automated testing method to find vulnerabilities in medium- to large-scale programs consisting of many interacting components. However, existing compositional analysis frameworks do not assess the severity of reported vulnerabilities. In thi… ▽ More

    Submitted 24 July, 2018; originally announced July 2018.

    Comments: To appear in the proceedings of the First International Workshop on Machine Learning and Software Engineering in Symbiosis (MASES'18), co-located with IEEE/ACM International Conference on Automated Software Engineering

  2. arXiv:1803.04881  [pdf, ps, other

    cs.SE

    Reviewing KLEE's Sonar-Search Strategy in Context of Greybox Fuzzing

    Authors: Saahil Ognawala, Alexander Pretschner, Thomas Hutzelmann, Eirini Psallida, Ricardo Nales Amato

    Abstract: Automatic test-case generation techniques of symbolic execution and fuzzing are the most widely used methods to discover vulnerabilities in, both, academia and industry. However, both these methods suffer from fundamental drawbacks that stop them from achieving high path coverage that may, consequently, lead to discovering vulnerabilities at the numerical scale of static analysis. In this presenta… ▽ More

    Submitted 13 March, 2018; originally announced March 2018.

    Comments: To be presented at KLEE Workshop 2018, London