{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,12]],"date-time":"2025-10-12T04:43:39Z","timestamp":1760244219161,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":82,"publisher":"ACM","license":[{"start":{"date-parts":[[2024,7,1]],"date-time":"2024-07-01T00:00:00Z","timestamp":1719792000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"DOI":"10.13039\/501100000781","name":"European Research Council","doi-asserted-by":"publisher","award":["101043410"],"award-info":[{"award-number":["101043410"]}],"id":[{"id":"10.13039\/501100000781","id-type":"DOI","asserted-by":"publisher"}]},{"name":"German Research Foundation","award":["390781972"],"award-info":[{"award-number":["390781972"]}]},{"name":"German Federal Ministry of Education and Research","award":["BIFOLD24B"],"award-info":[{"award-number":["BIFOLD24B"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,7]]},"DOI":"10.1145\/3634737.3661141","type":"proceedings-article","created":{"date-parts":[[2024,6,28]],"date-time":"2024-06-28T11:51:38Z","timestamp":1719575498000},"page":"1539-1553","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":5,"title":["SoK: Where to Fuzz? Assessing Target Selection Methods in Directed Fuzzing"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0001-2631-9031","authenticated-orcid":false,"given":"Felix","family":"Weissberg","sequence":"first","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0007-7799-0566","authenticated-orcid":false,"given":"Jonas","family":"M\u00f6ller","sequence":"additional","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4337-4390","authenticated-orcid":false,"given":"Tom","family":"Ganz","sequence":"additional","affiliation":[{"name":"SAP Security Research, Karlsruhe, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-2854-6419","authenticated-orcid":false,"given":"Erik","family":"Imgrund","sequence":"additional","affiliation":[{"name":"SAP Security Research, Walldorf, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-9185-780X","authenticated-orcid":false,"given":"Lukas","family":"Pirch","sequence":"additional","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-8190-0300","authenticated-orcid":false,"given":"Lukas","family":"Seidel","sequence":"additional","affiliation":[{"name":"Binarly, Santa Monica, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1630-1687","authenticated-orcid":false,"given":"Moritz","family":"Schloegel","sequence":"additional","affiliation":[{"name":"CISPA Helmholtz Center for Information Security, Saarbr\u00fccken, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4706-260X","authenticated-orcid":false,"given":"Thorsten","family":"Eisenhofer","sequence":"additional","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5054-8758","authenticated-orcid":false,"given":"Konrad","family":"Rieck","sequence":"additional","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"},{"name":"Technische Universit\u00e4t Wien, Vienna, Austria"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2024,7]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/SYNASC.2017.00035"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00117"},{"key":"e_1_3_2_1_3_1","volume-title":"Proc. of the Network and Distributed System Security Symposium (NDSS).","author":"Aschermann Cornelius","year":"2019","unstructured":"Cornelius Aschermann, Sergej Schumilo, Tim Blazytko, Robert Gawlik, and Thorsten Holz. 2019. REDQUEEN: Fuzzing with Input-to-State Correspondence.. In Proc. of the Network and Distributed System Security Symposium (NDSS)."},{"key":"e_1_3_2_1_4_1","volume-title":"Proc. of the USENIX Security Symposium.","author":"Bars Nils","year":"2023","unstructured":"Nils Bars, Moritz Schloegel, Tobias Scharnowski, Nico Schiller, and Thorsten Holz. 2023. Fuzztruction: Using Fault Injection-based Fuzzing to Leverage Implicit Domain Knowledge.. In Proc. of the USENIX Security Symposium."},{"key":"e_1_3_2_1_5_1","volume-title":"Proc. of the USENIX Security Symposium. 1985--2002","author":"Blazytko Tim","year":"2019","unstructured":"Tim Blazytko, Cornelius Aschermann, Moritz Schl\u00f6gel, Ali Abbasi, Sergej Schumilo, Simon W\u00f6rner, and Thorsten Holz. 2019. GRIMOIRE: Synthesizing Structure while Fuzzing.. In Proc. of the USENIX Security Symposium. 1985--2002."},{"key":"e_1_3_2_1_6_1","volume-title":"Proc. of the USENIX Security Symposium. 235--252","author":"Blazytko Tim","year":"2020","unstructured":"Tim Blazytko, Moritz Schl\u00f6gel, Cornelius Aschermann, Ali Abbasi, Joel Frank, Simon W\u00f6rner, and Thorsten Holz. 2020. AURORA: Statistical Crash Analysis for Automated Root Cause Explanation.. In Proc. of the USENIX Security Symposium. 235--252."},{"key":"e_1_3_2_1_7_1","volume-title":"Proc. of the ACM Conference on Computer and Communications Security (CCS). 2329--2344","author":"B\u00f6hme Marcel","year":"2017","unstructured":"Marcel B\u00f6hme, Van-Thuan Pham, Manh-Dung Nguyen, and Abhik Roychoudhury. 2017. Directed Greybox Fuzzing. In Proc. of the ACM Conference on Computer and Communications Security (CCS). 2329--2344."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134020"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978428"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/3510003.3510230"},{"key":"e_1_3_2_1_12_1","volume-title":"Proceedings of the 2022 ACM on Asia conference on computer and communications security. 561--573","author":"Canakci Sadullah","year":"2022","unstructured":"Sadullah Canakci, Nikolay Matyunin, Kalman Graffi, Ajay Joshi, and Manuel Egele. 2022. Targetfuzz: Using darts to guide directed greybox fuzzers. In Proceedings of the 2022 ACM on Asia conference on computer and communications security. 561--573."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179377"},{"key":"e_1_3_2_1_14_1","volume-title":"Deep learning based vulnerability detection: Are we there yet","author":"Chakraborty Saikat","year":"2022","unstructured":"Saikat Chakraborty, Rahul Krishna, Yangruibo Ding, and Baishakhi Ray. 2022. Deep learning based vulnerability detection: Are we there yet. IEEE Transactions on Software Engineering (2022)."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243849"},{"key":"e_1_3_2_1_16_1","volume-title":"Proc. of the Network and Distributed System Security Symposium (NDSS).","author":"Chen Jiongyi","year":"2018","unstructured":"Jiongyi Chen, Wenrui Diao, Qingchuan Zhao, Chaoshun Zuo, Zhiqiang Lin, XiaoFeng Wang, Wing Cheong Lau, Menghan Sun, Ronghai Yang, and Kehuan Zhang. 2018. IoTFuzzer: Discovering Memory Corruptions in IoT Through App-based Fuzzing.. In Proc. of the Network and Distributed System Security Symposium (NDSS)."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00046"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1145\/3607199.3607242"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00002"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/3487019.3487022"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/3475716.3475781"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1109\/EDCC51268.2020.00025"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484594"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2019.00024"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/3510003.3510197"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"crossref","first-page":"18","DOI":"10.1186\/s42400-022-00123-y","article-title":"Embedded fuzzing: a review of challenges, tools, and solutions","volume":"5","author":"Eisele Max","year":"2022","unstructured":"Max Eisele, Marcello Maugeri, Rachna Shriwas, Christopher Huth, and Giampaolo Bella. 2022. Embedded fuzzing: a review of challenges, tools, and solutions. Cybersecurity 5, 1 (2022), 18.","journal-title":"Cybersecurity"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/3379597.3387501"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2020.findings-emnlp.139"},{"key":"e_1_3_2_1_29_1","unstructured":"Fortify. 2013. RATS on Google Code. https:\/\/code.google.com\/archive\/p\/rough-auditing-tool-for-security\/issues."},{"key":"e_1_3_2_1_30_1","volume-title":"LineVul: A Transformer-based Line-Level Vulnerability Prediction. In International Conference on Mining Software Repositories (MSR).","author":"Fu Michael","year":"2022","unstructured":"Michael Fu and Chakkrit Tantithamthavorn. 2022. LineVul: A Transformer-based Line-Level Vulnerability Prediction. In International Conference on Mining Software Repositories (MSR)."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00040"},{"key":"e_1_3_2_1_32_1","volume-title":"Proc. of the USENIX Security Symposium. 49--64","author":"Haller Istv\u00e1n","year":"2013","unstructured":"Istv\u00e1n Haller, Asia Slowinska, Matthias Neugschwandtner, and Herbert Bos. 2013. Dowsing for Overflows: A Guided Fuzzer to Find Buffer Boundary Violations.. In Proc. of the USENIX Security Symposium. 49--64."},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/3460319.3464795"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833751"},{"key":"e_1_3_2_1_35_1","volume-title":"CodeSearchNet Challenge: Evaluating the State of Semantic Code Search. CoRR abs\/1909.09436","author":"Husain Hamel","year":"2019","unstructured":"Hamel Husain, Ho-Hsiang Wu, Tiferet Gazit, Miltiadis Allamanis, and Marc Brockschmidt. 2019. CodeSearchNet Challenge: Evaluating the State of Semantic Code Search. CoRR abs\/1909.09436 (2019). arXiv:1909.09436 http:\/\/arxiv.org\/abs\/1909.09436"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/3605764.3623915"},{"key":"e_1_3_2_1_37_1","volume-title":"Proc. of the Network and Distributed System Security Symposium (NDSS).","author":"Jiang Zu-Ming","year":"2022","unstructured":"Zu-Ming Jiang, Jia-Ju Bai, Kangjie Lu, and Shi-Min Hu. 2022. Context-Sensitive and Directional Concurrency Fuzzing for Data-Race Detection.. In Proc. of the Network and Distributed System Security Symposium (NDSS)."},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.procs.2020.04.217"},{"key":"e_1_3_2_1_39_1","volume-title":"Proc. of the USENIX Security Symposium.","author":"Kim Tae Eun","year":"2023","unstructured":"Tae Eun Kim, Jaeseung Choi, Kihong Heo, and Sang Kil Cha. 2023. DAFL: Directed Grey-box Fuzzing guided by Data Dependency.. In Proc. of the USENIX Security Symposium."},{"key":"e_1_3_2_1_40_1","volume-title":"Proceedings of the 32st ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering.","author":"Kim Tae Eun","year":"2024","unstructured":"Tae Eun Kim, Jaeseung Choi, Seongjae Im, Kihong Heo, and Sang Kil Cha. 2024. Evaluating Directed Fuzzers: Are We Heading in the Right Direction?. In Proceedings of the 32st ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering."},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243804"},{"key":"e_1_3_2_1_42_1","volume-title":"Proc. of the USENIX Security Symposium. 1043--1060","author":"Krupp Johannes","year":"2022","unstructured":"Johannes Krupp, Ilya Grishchenko, and Christian Rossow. 2022. AmpFuzz: Fuzzing for Amplification DDoS Vulnerabilities.. In Proc. of the USENIX Security Symposium. 1043--1060."},{"key":"e_1_3_2_1_43_1","volume-title":"Proc. of the USENIX Security Symposium. 3559--3576","author":"Lee Gwangmu","year":"2021","unstructured":"Gwangmu Lee, Woochul Shim, and Byoungyoung Lee. 2021. Constraint-guided Directed Greybox Fuzzing.. In Proc. of the USENIX Security Symposium. 3559--3576."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1109\/TR.2018.2834476"},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833683"},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179296"},{"key":"e_1_3_2_1_47_1","volume-title":"Mahmoud","author":"Mahmood Rahma","year":"2018","unstructured":"Rahma Mahmood and Qusay H. Mahmoud. 2018. Evaluation of Static Analysis Tools for Finding Vulnerabilities in Java and C\/C++ Source Code. CoRR abs\/1805.09040 (2018). arXiv:1805.09040 http:\/\/arxiv.org\/abs\/1805.09040"},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2019.2946563"},{"key":"e_1_3_2_1_49_1","volume-title":"Joint Meeting of the European Software Engineering Conference and the ACM SIGSOFT Symposium on the Foundations of Software Engineering, (ESEC\/FSE).","author":"Marinescu Paul Dan","year":"2013","unstructured":"Paul Dan Marinescu and Cristian Cadar. 2013. KATCH: high-coverage testing of software patches. In Joint Meeting of the European Software Engineering Conference and the ACM SIGSOFT Symposium on the Foundations of Software Engineering, (ESEC\/FSE)."},{"key":"e_1_3_2_1_50_1","volume-title":"Cppcheck: Tool for static C\/C++ code analysis. https:\/\/github.com\/danmar\/cppcheck.","author":"Marjam\u00e4ki Daniel","year":"2007","unstructured":"Daniel Marjam\u00e4ki. 2007. Cppcheck: Tool for static C\/C++ code analysis. https:\/\/github.com\/danmar\/cppcheck."},{"key":"e_1_3_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.1145\/3510003.3510082"},{"key":"e_1_3_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23166"},{"key":"e_1_3_2_1_53_1","volume-title":"23rd International Symposium on Research in Attacks, Intrusions and Defenses (RAID","author":"Nguyen Manh-Dung","year":"2020","unstructured":"Manh-Dung Nguyen, S\u00e9bastien Bardin, Richard Bonichon, Roland Groz, and Matthieu Lemerre. 2020. Binary-level directed fuzzing for {use-after-free} vulnerabilities. In 23rd International Symposium on Research in Attacks, Intrusions and Defenses (RAID 2020). 47--62."},{"key":"e_1_3_2_1_54_1","unstructured":"Lin Padgham Young Lee Shazia Sadiq Michael Winikoff Alan Fekete Stephen MacDonell Dali Kaafar and Stefanie Zollmann. [n. d.]. CORE Rankings. https:\/\/www.core.edu.au\/conference-portal"},{"key":"e_1_3_2_1_55_1","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2019.00066"},{"key":"e_1_3_2_1_56_1","volume-title":"Proc. of the Network and Distributed System Security Symposium (NDSS).","author":"Rawat Sanjay","year":"2017","unstructured":"Sanjay Rawat, Vivek Jain, Ashish Kumar, Lucian Cojocar, Cristiano Giuffrida, and Herbert Bos. 2017. VUzzer: Application-aware Evolutionary Fuzzing.. In Proc. of the Network and Distributed System Security Symposium (NDSS)."},{"key":"e_1_3_2_1_57_1","unstructured":"Gary J Saavedra Kathryn N Rodhouse Daniel M Dunlavy and Philip W Kegelmeyer. 2019. A Review of Machine Learning Applications in Fuzzing. arXiv:1906.11133 [cs.CR]"},{"key":"e_1_3_2_1_58_1","volume-title":"Lessons from Building Static Analysis Tools at Google. Communications of the ACM (CACM) 61 Issue 4","author":"Sadowski Caitlin","year":"2018","unstructured":"Caitlin Sadowski, Edward Aftandilian, Alex Eagle, Liam Miller-Cushon, and Ciera Jaspan. 2018. Lessons from Building Static Analysis Tools at Google. Communications of the ACM (CACM) 61 Issue 4 (2018), 58--66. https:\/\/dl.acm.org\/citation.cfm?id=3188720"},{"key":"e_1_3_2_1_59_1","volume-title":"Proc. of the Network and Distributed System Security Symposium (NDSS).","author":"Schiller Nico","year":"2023","unstructured":"Nico Schiller, Merlin Chlosta, Moritz Schloegel, Nils Bars, Thorsten Eisenhofer, Tobias Scharnowski, Felix Domke, Lea Sch\u00f6nherr, and Thorsten Holz. 2023. Drone Security and the Mysterious Case of DJI's DroneID.. In Proc. of the Network and Distributed System Security Symposium (NDSS)."},{"key":"e_1_3_2_1_60_1","volume-title":"SoK: Prudent Evaluation Practices for Fuzzing. In 2024 IEEE Symposium on Security and Privacy (SP). IEEE Computer Society, 137--137","author":"Schloegel Moritz","year":"2024","unstructured":"Moritz Schloegel, Nils Bars, Nico Schiller, Lukas Bernhard, Tobias Scharnowski, Addison Crump, Arash Ale-Ebrahim, Nicolai Bissantz, Marius Muench, and Thorsten Holz. 2024. SoK: Prudent Evaluation Practices for Fuzzing. In 2024 IEEE Symposium on Security and Privacy (SP). IEEE Computer Society, 137--137."},{"key":"e_1_3_2_1_61_1","volume-title":"Proc. of the USENIX Security Symposium.","author":"Seidel Lukas","year":"2023","unstructured":"Lukas Seidel, Dominik Christian Maier, and Marius Muench. 2023. Forming Faster Firmware Fuzzers.. In Proc. of the USENIX Security Symposium."},{"key":"e_1_3_2_1_62_1","unstructured":"Kostya Serebryany. 2017. {OSS-Fuzz}-Google's continuous fuzzing service for open source software. (2017)."},{"key":"e_1_3_2_1_63_1","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560648"},{"key":"e_1_3_2_1_64_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00052"},{"key":"e_1_3_2_1_65_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833761"},{"key":"e_1_3_2_1_66_1","volume-title":"Fuzzing: Brute Force Vulnerability Discovery","author":"Sutton M.","year":"2007","unstructured":"M. Sutton, A. Greene, and P. Amini. 2007. Fuzzing: Brute Force Vulnerability Discovery. Addison-Wesley Professional."},{"key":"e_1_3_2_1_67_1","unstructured":"VulDetProject. 2021. VulDetProject Implementation of ReVeal. https:\/\/github.com\/VulDetProject\/ReVeal."},{"key":"e_1_3_2_1_68_1","doi-asserted-by":"crossref","unstructured":"Pengfei Wang Xu Zhou Tai Yue Peihong Lin Yingying Liu and Kai Lu. [n. d.]. The progress challenges and perspectives of directed greybox fuzzing. Softw. Test. Verification Reliab. 34 2 ([n. d.]).","DOI":"10.1002\/stvr.1869"},{"key":"e_1_3_2_1_69_1","doi-asserted-by":"publisher","DOI":"10.1371\/journal.pone.0237749"},{"key":"e_1_3_2_1_70_1","volume-title":"Proc. of the Network and Distributed System Security Symposium (NDSS).","author":"Wang Yanhao","year":"2020","unstructured":"Yanhao Wang, Xiangkun Jia, Yuwei Liu, Kyle Zeng, Tiffany Bao, Dinghao Wu, and Purui Su. 2020. Not All Coverage Measurements Are Equal: Fuzzing by Coverage Accounting for Input Prioritization.. In Proc. of the Network and Distributed System Security Symposium (NDSS)."},{"key":"e_1_3_2_1_71_1","volume-title":"Nghi D.Q. Bui, Junnan Li, and Steven C. H. Hoi.","author":"Wang Yue","year":"2023","unstructured":"Yue Wang, Hung Le, Akhilesh Deepak Gotmare, Nghi D.Q. Bui, Junnan Li, and Steven C. H. Hoi. 2023. CodeT5+: Open Code Large Language Models for Code Understanding and Generation. arXiv preprint (2023)."},{"key":"e_1_3_2_1_72_1","volume-title":"Conference on Learning Theory (COLT).","author":"Wang Yining","year":"2013","unstructured":"Yining Wang, Liwei Wang, Yuanzhi Li, Di He, and Tie-Yan Liu. 2013. Conference on Learning Theory (COLT)."},{"key":"e_1_3_2_1_73_1","doi-asserted-by":"publisher","DOI":"10.1145\/3510003.3510174"},{"key":"e_1_3_2_1_74_1","doi-asserted-by":"publisher","DOI":"10.1145\/3377811.3380388"},{"key":"e_1_3_2_1_75_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.44"},{"key":"e_1_3_2_1_76_1","volume-title":"Proc. of the USENIX Security Symposium.","author":"Yuan Ming","year":"2023","unstructured":"Ming Yuan, Bodong Zhao, Penghui Li, Jiashuo Liang, Xinhui Han, Xiapu Luo, and Chao Zhang. 2023. DDRace: Finding Concurrency UAF Vulnerabilities in Linux Drivers with Directed Fuzzing.. In Proc. of the USENIX Security Symposium."},{"key":"e_1_3_2_1_77_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833563"},{"key":"e_1_3_2_1_78_1","volume-title":"Predecessor-aware Directed Greybox Fuzzing. In 2024 IEEE Symposium on Security and Privacy (SP). IEEE Computer Society, 40--40","author":"Zhang Yujian","year":"2023","unstructured":"Yujian Zhang, Yaokun Liu, Jinyu Xu, and Yanhao Wang. 2023. Predecessor-aware Directed Greybox Fuzzing. In 2024 IEEE Symposium on Security and Privacy (SP). IEEE Computer Society, 40--40."},{"key":"e_1_3_2_1_79_1","volume-title":"Proc. of the USENIX Security Symposium.","author":"Zheng Han","year":"2023","unstructured":"Han Zheng, Jiayuan Zhang, Yuhang Huang, Zezhong Ren, HeWang, Chunjie Cao, Yuqing Zhang, Flavio Toffalini, and Mathias Payer. 2023. FISHFUZZ: Catch Deeper Bugs by Throwing Larger Nets.. In Proc. of the USENIX Security Symposium."},{"key":"e_1_3_2_1_80_1","volume-title":"Proc. of the Conference on Neural Information Processing Systems (NeurIPS). 10197--10207","author":"Zhou Yaqin","year":"2019","unstructured":"Yaqin Zhou, Shangqing Liu, Jing Kai Siow, Xiaoning Du, and Yang Liu. 2019. Devign: Effective Vulnerability Identification by Learning Comprehensive Program Semantics via Graph Neural Networks.. In Proc. of the Conference on Neural Information Processing Systems (NeurIPS). 10197--10207."},{"key":"e_1_3_2_1_81_1","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484596"},{"key":"e_1_3_2_1_82_1","volume-title":"Proc. of the USENIX Security Symposium. 2255--2269","author":"Zong Peiyuan","year":"2020","unstructured":"Peiyuan Zong, Tao Lv, Dawei Wang, Zizhuang Deng, Ruigang Liang, and Kai Chen. 2020. FuzzGuard: Filtering out Unreachable Inputs in Directed Grey-box Fuzzing through Deep Learning.. In Proc. of the USENIX Security Symposium. 2255--2269."},{"key":"e_1_3_2_1_83_1","volume-title":"Proc. of the USENIX Security Symposium. 2289--2306","author":"\u00d6sterlund Sebastian","year":"2020","unstructured":"Sebastian \u00d6sterlund, Kaveh Razavi, Herbert Bos, and Cristiano Giuffrida. 2020. ParmeSan: Sanitizer-guided Greybox Fuzzing.. In Proc. of the USENIX Security Symposium. 2289--2306."}],"event":{"name":"ASIA CCS '24: 19th ACM Asia Conference on Computer and Communications Security","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"],"location":"Singapore Singapore","acronym":"ASIA CCS '24"},"container-title":["Proceedings of the 19th ACM Asia Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3634737.3661141","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T23:44:07Z","timestamp":1750290247000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3634737.3661141"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,7]]},"references-count":82,"alternative-id":["10.1145\/3634737.3661141","10.1145\/3634737"],"URL":"https:\/\/doi.org\/10.1145\/3634737.3661141","relation":{},"subject":[],"published":{"date-parts":[[2024,7]]},"assertion":[{"value":"2024-07-01","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}