{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,23]],"date-time":"2026-04-23T10:08:28Z","timestamp":1776938908418,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":40,"publisher":"ACM","funder":[{"name":"Spanish Ministry of Science and Innovation","award":["MIG-20242112 CRITIC"],"award-info":[{"award-number":["MIG-20242112 CRITIC"]}]},{"name":"UKRI EPSRC","award":["EP\/S022503\/1"],"award-info":[{"award-number":["EP\/S022503\/1"]}]},{"name":"Basque Government","award":["IT1676-22"],"award-info":[{"award-number":["IT1676-22"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2025,6,23]]},"DOI":"10.1145\/3696630.3728497","type":"proceedings-article","created":{"date-parts":[[2025,7,28]],"date-time":"2025-07-28T19:10:43Z","timestamp":1753729843000},"page":"550-554","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":1,"title":["GAFLERNA Ahoy! Integrating EM Side-Channel Analysis into Traditional Fuzzing Workflows"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5552-6825","authenticated-orcid":false,"given":"Jorge","family":"Barredo","sequence":"first","affiliation":[{"name":"IKERLAN, Arrasate\/Mondrag\u00f3n, Spain"},{"name":"Mondragon Unibertsitatea, Arrasate\/Mondrag\u00f3n, Spain"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7833-6044","authenticated-orcid":false,"given":"Justyna","family":"Petke","sequence":"additional","affiliation":[{"name":"University College London, London, United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7004-934X","authenticated-orcid":false,"given":"David","family":"Clark","sequence":"additional","affiliation":[{"name":"University College London, London, United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7320-9057","authenticated-orcid":false,"given":"Daniel","family":"Blackwell","sequence":"additional","affiliation":[{"name":"University College London, London, United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7755-2848","authenticated-orcid":false,"given":"Maialen","family":"Eceiza","sequence":"additional","affiliation":[{"name":"IKERLAN, Arrasate\/Mondrag\u00f3n, Spain"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5555-9712","authenticated-orcid":false,"given":"Jose Luis","family":"Flores","sequence":"additional","affiliation":[{"name":"University of the Basque Country UPV\/EHU, Donostia\/San Sebasti\u00e1n, Spain"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9641-5646","authenticated-orcid":false,"given":"Mikel","family":"Iturbe","sequence":"additional","affiliation":[{"name":"Mondragon Unibertsitatea, Arrasate\/Mondrag\u00f3n, Spain"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2025,7,28]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"crossref","first-page":"433","DOI":"10.1002\/wics.101","article-title":"Principal component analysis","volume":"2","author":"Abdi Herv\u00e9","year":"2010","unstructured":"Herv\u00e9 Abdi and Lynne J. Williams. 2010. Principal component analysis. WIREs Computational Statistics 2, 4 (2010), 433\u2013459.","journal-title":"WIREs Computational Statistics"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.3390\/technologies9030052"},{"key":"e_1_3_2_1_3_1","volume-title":"Proceedings of the 37th ACM\/SIGAPP Symposium on Applied Computing (SAC '22)","author":"Ara Gabriele","year":"2022","unstructured":"Gabriele Ara, Tommaso Cucinotta, and Agostino Mascitti. 2022. Simulating execution time and power consumption of real-time tasks on embedded platforms. In Proceedings of the 37th ACM\/SIGAPP Symposium on Applied Computing (SAC '22). Association for Computing Machinery, 491\u2013500. 10.1145\/3477314.3507030"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"crossref","first-page":"e1718","DOI":"10.1002\/stvr.1718","article-title":"An exploration of effective fuzzing for side-channel cache leakage","volume":"30","author":"Basu Tiyash","year":"2020","unstructured":"Tiyash Basu, Kartik Aggarwal, Chundong Wang, and Sudipta Chattopadhyay. 2020. An exploration of effective fuzzing for side-channel cache leakage. Software Testing, Verification and Reliability 30, 1 (2020), e1718.","journal-title":"Software Testing, Verification and Reliability"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2024.3484947"},{"key":"e_1_3_2_1_6_1","volume-title":"Proceedings of the ACM\/IEEE 42nd International Conference on Software Engineering (ICSE '20)","author":"Brennan Tegan","year":"2020","unstructured":"Tegan Brennan, Seemanta Saha, and Tevfik Bultan. 2020. JVM fuzzing for JIT-induced side-channel detection. In Proceedings of the ACM\/IEEE 42nd International Conference on Software Engineering (ICSE '20). Association for Computing Machinery, 1011\u20131023. 10.1145\/3377811.3380432"},{"key":"e_1_3_2_1_7_1","volume-title":"Proceedings of the 2000 ACM SIGMOD International Conference on Management of Data (SIGMOD '00)","author":"Breunig Markus M.","year":"2000","unstructured":"Markus M. Breunig, Hans-Peter Kriegel, Raymond T. Ng, and J\u00f6rg Sander. 2000. LOF: identifying density-based local outliers. In Proceedings of the 2000 ACM SIGMOD International Conference on Management of Data (SIGMOD '00). Association for Computing Machinery, 93\u2013104. 10.1145\/342009.335388"},{"key":"e_1_3_2_1_8_1","volume-title":"28th USENIX Security Symposium (USENIX Security 19)","author":"Chen Yuanliang","year":"2019","unstructured":"Yuanliang Chen, Yu Jiang, Fuchen Ma, Jie Liang, Mingzhe Wang, Chijin Zhou, Xun Jiao, and Zhuo Su. 2019. EnFuzz: Ensemble Fuzzing with Seed Synchronization among Diverse Fuzzers. In 28th USENIX Security Symposium (USENIX Security 19). USENIX Association, 1967\u20131983."},{"key":"e_1_3_2_1_9_1","volume-title":"Proceedings of the Conference on Research in Adaptive and Convergent Systems (RACS '19)","author":"Cheng Zhangyu","year":"2019","unstructured":"Zhangyu Cheng, Chengming Zou, and Jianwei Dong. 2019. Outlier detection using isolation forest and local outlier factor. In Proceedings of the Conference on Research in Adaptive and Convergent Systems (RACS '19). Association for Computing Machinery, 161\u2013168. 10.1145\/3338840.3355641"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"crossref","first-page":"102946","DOI":"10.1016\/j.cose.2022.102946","article-title":"Improving fuzzing assessment methods through the analysis of metrics and experimental conditions","volume":"124","author":"Eceiza Maialen","year":"2023","unstructured":"Maialen Eceiza, Jose Luis Flores, and Mikel Iturbe. 2023. Improving fuzzing assessment methods through the analysis of metrics and experimental conditions. Computers & Security 124 (2023), 102946.","journal-title":"Computers & Security"},{"key":"e_1_3_2_1_11_1","volume-title":"14th USENIX Workshop on Offensive Technologies (WOOT 20)","author":"Fioraldi Andrea","year":"2020","unstructured":"Andrea Fioraldi, Dominik Maier, Heiko Ei\u00dffeldt, and Marc Heuse. 2020. AFL++ : Combining Incremental Steps of Fuzzing Research. In 14th USENIX Workshop on Offensive Technologies (WOOT 20). USENIX Association."},{"key":"e_1_3_2_1_12_1","volume-title":"Side Channel Monitoring for Fuzz Testing of Future Mobility Systems. CLOUD COMPUTING 2023 (06","author":"Fuxen Philipp","year":"2023","unstructured":"Philipp Fuxen, Murad Hachani, Jonas Schmidt, Philipp Zaumseil, and Rudolf Hackenberg. 2023. Side Channel Monitoring for Fuzz Testing of Future Mobility Systems. CLOUD COMPUTING 2023 (06 2023), 15\u201320."},{"key":"e_1_3_2_1_13_1","unstructured":"Google. 2018. Fuzzer-test-suite. https:\/\/github.com\/google\/fuzzer-test-suite"},{"key":"e_1_3_2_1_14_1","unstructured":"Halcy0nic. 2023. https:\/\/github.com\/Halcy0nic\/CVE-2022-34913\/tree\/main"},{"key":"e_1_3_2_1_15_1","volume-title":"On the Efficacy of Power Side Channel-Based Control Flow Monitoring. In 31st USENIX Security Symposium (USENIX Security 22)","author":"Han Yi","year":"2022","unstructured":"Yi Han, Matthew Chan, Zahra Aref, Nils Ole Tippenhauer, and Saman Zonouz. 2022. Hiding in Plain Sight? On the Efficacy of Power Side Channel-Based Control Flow Monitoring. In 31st USENIX Security Symposium (USENIX Security 22). USENIX Association, 661\u2013678."},{"key":"e_1_3_2_1_16_1","volume-title":"2020 IEEE 13th International Conference on Software Testing, Validation and Verification (ICST). IEEE Computer Society, 466\u2013471","author":"He Shaobo","year":"2020","unstructured":"Shaobo He, Michael Emmi, and Gabriela Ciocarlie. 2020. ct-fuzz: Fuzzing for Timing Leaks. In 2020 IEEE 13th International Conference on Software Testing, Validation and Verification (ICST). IEEE Computer Society, 466\u2013471. 10.1109\/ICST46399.2020.00063"},{"key":"e_1_3_2_1_17_1","volume-title":"Proceedings of the 2021 ACM SIGSAC Conference on Computer and Communications Security (CCS '21)","author":"Jin Wenqiang","year":"2021","unstructured":"Wenqiang Jin, Srinivasan Murali, Huadi Zhu, and Ming Li. 2021. Periscope: A Keystroke Inference Attack Using Human Coupled Electromagnetic Emanations. In Proceedings of the 2021 ACM SIGSAC Conference on Computer and Communications Security (CCS '21). Association for Computing Machinery, 700\u2013714. 10.1145\/3460120.3484549"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"crossref","first-page":"115531","DOI":"10.1016\/j.eswa.2021.115531","article-title":"Object oriented time series exploration: Applied to power consumption analysis of embedded systems","volume":"184","author":"Krosman Kazimierz","year":"2021","unstructured":"Kazimierz Krosman, Janusz Sosnowski, and Piotr Gawkowski. 2021. Object oriented time series exploration: Applied to power consumption analysis of embedded systems. Expert Systems with Applications 184 (2021), 115531.","journal-title":"Expert Systems with Applications"},{"key":"e_1_3_2_1_19_1","unstructured":"Github Security Lab. 2022. https:\/\/github.com\/antonio-morales\/Fuzzing101"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"crossref","first-page":"75","DOI":"10.1049\/wss2.12054","article-title":"An embedded and intelligent anomaly power consumption detection system based on smart metering","volume":"13","author":"Qaddoori Sahar Lazim","year":"2023","unstructured":"Sahar Lazim Qaddoori and Qutaiba Ibrahim Ali. 2023. An embedded and intelligent anomaly power consumption detection system based on smart metering. IET Wireless Sensor Systems 13, 2 (2023), 75\u201390.","journal-title":"IET Wireless Sensor Systems"},{"key":"e_1_3_2_1_21_1","volume-title":"Accounting for Missing Events in Statistical Information Leakage Analysis. In 2025 IEEE\/ACM 47th International Conference on Software Engineering (ICSE). IEEE Computer Society, 217\u2013228","author":"Lee Seongmin","year":"2025","unstructured":"Seongmin Lee, Shreyas Minocha, and Marcel B\u00f6hme. 2025. Accounting for Missing Events in Statistical Information Leakage Analysis. In 2025 IEEE\/ACM 47th International Conference on Software Engineering (ICSE). IEEE Computer Society, 217\u2013228. 10.1109\/ICSE55347.2025.00018"},{"key":"e_1_3_2_1_22_1","volume-title":"Isolation Forest. In Proceedings of the 2008 Eighth IEEE International Conference on Data Mining (ICDM '08)","author":"Liu Fei Tony","year":"2008","unstructured":"Fei Tony Liu, Kai Ming Ting, and Zhi-Hua Zhou. 2008. Isolation Forest. In Proceedings of the 2008 Eighth IEEE International Conference on Data Mining (ICDM '08). IEEE Computer Society, 413\u2013422. 10.1109\/ICDM.2008.17"},{"key":"e_1_3_2_1_23_1","volume-title":"Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security (CCS '24)","author":"Liu Kaizheng","year":"2024","unstructured":"Kaizheng Liu, Ming Yang, Zhen Ling, Yue Zhang, Chongqing Lei, Junzhou Luo, and Xinwen Fu. 2024. RIoTFuzzer: Companion App Assisted Remote Fuzzing for Detecting Vulnerabilities in IoT Devices. In Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security (CCS '24). Association for Computing Machinery, 2341\u20132354. 10.1145\/3658644.3670342"},{"key":"e_1_3_2_1_24_1","volume-title":"EM Eye: Characterizing Electromagnetic Side-channel Eavesdropping on Embedded Cameras. In Network and Distributed Systems Security (NDSS) Symposium. 10","author":"Long Yan","year":"2024","unstructured":"Yan Long, Qinhong Jiang, Chen Yan, Tobias Alam, Xiaoyu Ji, Wenyuan Xu, and Kevin Fu. 2024. EM Eye: Characterizing Electromagnetic Side-channel Eavesdropping on Embedded Cameras. In Network and Distributed Systems Security (NDSS) Symposium. 10.14722\/ndss.2024.24552"},{"key":"e_1_3_2_1_25_1","volume-title":"Bleem: Packet Sequence Oriented Fuzzing for Protocol Implementations. In 32nd USENIX Security Symposium (USENIX Security 23)","author":"Luo Zhengxiong","year":"2023","unstructured":"Zhengxiong Luo, Junze Yu, Feilong Zuo, Jianzhong Liu, Yu Jiang, Ting Chen, Abhik Roychoudhury, and Jiaguang Sun. 2023. Bleem: Packet Sequence Oriented Fuzzing for Protocol Implementations. In 32nd USENIX Security Symposium (USENIX Security 23). USENIX Association, 4481\u20134498."},{"key":"e_1_3_2_1_26_1","volume-title":"Proceedings of the 31st Annual Network and Distributed System Security Symposium (NDSS). 10","author":"Meng Ruijie","year":"2024","unstructured":"Ruijie Meng, Martin Mirchev, Marcel B\u00f6hme, and Abhik Roychoudhury. 2024. Large Language Model guided Protocol Fuzzing. In Proceedings of the 31st Annual Network and Distributed System Security Symposium (NDSS). 10.14722\/ndss.2024.24556"},{"key":"e_1_3_2_1_27_1","volume-title":"Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security (CCS '23)","author":"Ni Tao","year":"2023","unstructured":"Tao Ni, Xiaokuan Zhang, and Qingchuan Zhao. 2023. Recovering Fingerprints from In-Display Fingerprint Sensors via Electromagnetic Side Channel. In Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security (CCS '23). Association for Computing Machinery, 253\u2013267. 10.1145\/3576915.3623153"},{"key":"e_1_3_2_1_28_1","volume-title":"Proceedings of the 41st International Conference on Software Engineering (ICSE '19)","author":"Nilizadeh Shirin","year":"2019","unstructured":"Shirin Nilizadeh, Yannic Noller, and Corina S. P\u0103s\u0103reanu. 2019. DifFuzz: differential fuzzing for side-channel analysis. In Proceedings of the 41st International Conference on Software Engineering (ICSE '19). IEEE Press, 176\u2013187. 10.1109\/ICSE.2019.00034"},{"key":"e_1_3_2_1_29_1","volume-title":"Proceedings of the 33rd ACM\/IEEE International Conference on Automated Software Engineering (ASE '18)","author":"Noller Yannic","year":"2018","unstructured":"Yannic Noller. 2018. Differential program analysis with fuzzing and symbolic execution. In Proceedings of the 33rd ACM\/IEEE International Conference on Automated Software Engineering (ASE '18). Association for Computing Machinery, 944\u2013947. 10.1145\/3238147.3241537"},{"key":"e_1_3_2_1_30_1","volume-title":"Proceedings of the 30th ACM SIGSOFT International Symposium on Software Testing and Analysis (ISSTA","author":"Noller Yannic","year":"2021","unstructured":"Yannic Noller and Saeid Tizpaz-Niari. 2021. QFuzz: quantitative fuzzing for side channels. In Proceedings of the 30th ACM SIGSOFT International Symposium on Software Testing and Analysis (ISSTA 2021). Association for Computing Machinery, 257\u2013269. 10.1145\/3460319.3464817"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/3569577"},{"key":"e_1_3_2_1_32_1","volume-title":"Automation & Test in Europe Conference & Exhibition (DATE). IEEE. 10","author":"Rajapaksha Chathura","year":"2023","unstructured":"Chathura Rajapaksha, Leila Delshadtehrani, Manuel Egele, and Ajay Joshi. 2023. SIGFuzz: A Framework for Discovering Microarchitectural Timing Side Channels. In 2023 Design, Automation & Test in Europe Conference & Exhibition (DATE). IEEE. 10.23919\/date56975.2023.10136966"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2024.3427369"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"crossref","first-page":"S94","DOI":"10.1016\/j.diin.2019.04.012","article-title":"Leveraging Electromagnetic Side-Channel Analysis for the Investigation of IoT Devices","volume":"29","author":"Sayakkara Asanka","year":"2019","unstructured":"Asanka Sayakkara, Nhien-An Le-Khac, and Mark Scanlon. 2019. Leveraging Electromagnetic Side-Channel Analysis for the Investigation of IoT Devices. Digital Investigation 29 (2019), S94\u2013S103.","journal-title":"Digital Investigation"},{"key":"e_1_3_2_1_35_1","volume-title":"AddressSanitizer: A Fast Address Sanity Checker. In 2012 USENIX Annual Technical Conference (USENIX ATC 12)","author":"Serebryany Konstantin","year":"2012","unstructured":"Konstantin Serebryany, Derek Bruening, Alexander Potapenko, and Dmitriy Vyukov. 2012. AddressSanitizer: A Fast Address Sanity Checker. In 2012 USENIX Annual Technical Conference (USENIX ATC 12). USENIX Association, 309\u2013318."},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23176"},{"key":"e_1_3_2_1_37_1","volume-title":"Proceedings, Part I. Springer-Verlag, 259\u2013278","author":"Sperl Philip","year":"2019","unstructured":"Philip Sperl and Konstantin B\u00f6ttinger. 2019. Side-Channel Aware Fuzzing. In Computer Security - ESORICS 2019: 24th European Symposium on Research in Computer Security, Luxembourg, September 23\u201327, 2019, Proceedings, Part I. Springer-Verlag, 259\u2013278. 10.1007\/978-3-030-29959-0_13"},{"key":"e_1_3_2_1_38_1","volume-title":"2015 IEEE\/ACM International Symposium on Code Generation and Optimization (CGO). IEEE Computer Society, 46\u201355","author":"Stepanov Evgeniy","year":"2015","unstructured":"Evgeniy Stepanov and Konstantin Serebryany. 2015. MemorySanitizer: Fast detector of uninitialized memory use in C++. In 2015 IEEE\/ACM International Symposium on Code Generation and Optimization (CGO). IEEE Computer Society, 46\u201355. 10.1109\/CGO.2015.7054186"},{"key":"e_1_3_2_1_39_1","unstructured":"KPC Team. 2023. Overclocking for Raspberry Pi 3 Model B with LN2. https:\/\/xdevs.com\/article\/rpi3_oc\/"},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.26599\/TST.2021.9010078"}],"event":{"name":"FSE Companion '25: 33rd ACM International Conference on the Foundations of Software Engineering","location":"Clarion Hotel Trondheim Trondheim Norway","acronym":"FSE Companion '25","sponsor":["SIGSOFT ACM Special Interest Group on Software Engineering"]},"container-title":["Proceedings of the 33rd ACM International Conference on the Foundations of Software Engineering"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3696630.3728497","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,28]],"date-time":"2025-07-28T19:12:32Z","timestamp":1753729952000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3696630.3728497"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,6,23]]},"references-count":40,"alternative-id":["10.1145\/3696630.3728497","10.1145\/3696630"],"URL":"https:\/\/doi.org\/10.1145\/3696630.3728497","relation":{},"subject":[],"published":{"date-parts":[[2025,6,23]]},"assertion":[{"value":"2025-07-28","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}