Publications

(2023). Practical Methods for Fuzzing Real-World Systems. PhD Thesis, Purdue University.

PDF DOI

(2023). Crystallizer: A Hybrid Path Analysis Framework to Aid in Uncovering Deserialization Vulnerabilities. In FSE ‘23.

PDF Code DOI

(2022). One Fuzz Doesn't Fit All: Optimizing Directed Fuzzing via Target-tailored Program State Restriction. In ACSAC ‘22.

PDF Code DOI

(2021). Gramatron: Effective Grammar-Aware Fuzzing. In ISSTA ‘21.

PDF Code DOI

(2019). FirmFuzz: Automated IoT Firmware Introspection and Analysis. In IoTS&P ‘19.

PDF Code DOI

(2017). Protecting bare-metal embedded systems with privilege overlays. In Oakland ‘17.

PDF DOI

(2017). Protection against code exploitation using ROP and check-summing in IoT environment. In ICoICT ‘17.

PDF DOI