{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,17]],"date-time":"2026-07-17T15:06:14Z","timestamp":1784300774348,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":41,"publisher":"ACM","license":[{"start":{"date-parts":[[2026,7,5]],"date-time":"2026-07-05T00:00:00Z","timestamp":1783209600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,7,5]]},"DOI":"10.1145\/3803437.3805205","type":"proceedings-article","created":{"date-parts":[[2026,7,17]],"date-time":"2026-07-17T14:27:39Z","timestamp":1784298459000},"page":"316-321","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["Lessons from Mitigating False Positives in Google's OSS-Fuzz-Gen"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-1001-525X","authenticated-orcid":false,"given":"Paschal","family":"Amusuo","sequence":"first","affiliation":[{"name":"Purdue University, West Lafayette, Indiana, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4821-7033","authenticated-orcid":false,"given":"Dongge","family":"Liu","sequence":"additional","affiliation":[{"name":"Google, Melbourne, Australia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-6681-4840","authenticated-orcid":false,"given":"Ricardo Andres Calvo","family":"Mendez","sequence":"additional","affiliation":[{"name":"Purdue University, West Lafayette, Indiana, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7042-0444","authenticated-orcid":false,"given":"Jonathan","family":"Metzman","sequence":"additional","affiliation":[{"name":"Google, New York City, New York, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-3181-4551","authenticated-orcid":false,"given":"Oliver","family":"Chang","sequence":"additional","affiliation":[{"name":"Google, Melbourne, Australia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2495-686X","authenticated-orcid":false,"given":"James C","family":"Davis","sequence":"additional","affiliation":[{"name":"Purdue University, West Lafayette, Indiana, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,7,17]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"2016. Announcing OSS-Fuzz: Continuous fuzzing for open source software. https:\/\/opensource.googleblog.com\/2016\/12\/announcing-oss-fuzz-continuous-fuzzing.html"},{"key":"e_1_3_2_1_2_1","unstructured":"2019. A gentle introduction to Linux Kernel fuzzing. https:\/\/blog.cloudflare.com\/a-gentle-introduction-to-linux-kernel-fuzzing\/"},{"key":"e_1_3_2_1_3_1","unstructured":"2025. Accepting new projects. https:\/\/google.github.io\/oss-fuzz\/getting-started\/accepting-new-projects\/"},{"key":"e_1_3_2_1_4_1","unstructured":"2025. Fuzzing | Project Profile. https:\/\/introspector.oss-fuzz.com\/"},{"key":"e_1_3_2_1_5_1","unstructured":"2025. OSS-Fuzz Reward Program Rules | Google Bug Hunters. https:\/\/bughunters.google.com\/about\/rules\/open-source\/5097259337383936\/oss-fuzz-reward-program-rules"},{"key":"e_1_3_2_1_6_1","unstructured":"Bushra A. Alahmadi Louise Axon and Ivan Martinovic. 2022. 99% False Positives: A Qualitative Study of SOC Analysts' Perspectives on Security Alarms. 2783\u20132800. https:\/\/www.usenix.org\/conference\/usenixsecurity22\/presentation\/alahmadi"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP54263.2024.00019"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","unstructured":"Paschal C. Amusuo. 2026. FSE-Industry-2026-OSSFuzzGen-FalseCrashReducer. GitHub repository. 10.5281\/zenodo.19392180","DOI":"10.5281\/zenodo.19392180"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.48550\/arXiv.2605.10712"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.48550\/arXiv.2503.13762"},{"key":"e_1_3_2_1_11_1","volume-title":"Jonathan Metzman, Oliver Chang, and James C. Davis.","author":"Amusuo Paschal C.","year":"2025","unstructured":"Paschal C. Amusuo, Dongge Liu, Ricardo Andres Calvo Mendez, Jonathan Metzman, Oliver Chang, and James C. Davis. 2025. FalseCrashReducer: Mitigating False Positive Crashes in OSS-Fuzz-Gen Using Agentic AI. arXiv:2510.02185 [cs.SE] https:\/\/arxiv.org\/abs\/2510.02185"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/ASE56229.2023.00095"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE-NIER66352.2025.00013"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/3338906.3340456"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSR52588.2021.00026"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3605157.3605177"},{"key":"e_1_3_2_1_17_1","unstructured":"Google. 2024. oss-fuzz-gen: LLM powered fuzzing via OSS-Fuzz. https:\/\/github.com\/google\/oss-fuzz-gen. GitHub repository."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2023.3329667"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","unstructured":"Philipp G\u00f6rz Joschua Schilling Thorsten Holz and Marcel B\u00f6hme. 2025. An Empirical Study of Fuzz Harness Degradation. arXiv:2505.06177 [cs] 10.48550\/arXiv.2505.06177","DOI":"10.48550\/arXiv.2505.06177"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/3719027.3744811"},{"key":"e_1_3_2_1_21_1","volume-title":"Vishwath Mohan, and Mathias Payer.","author":"Ispoglou Kyriakos","year":"2020","unstructured":"Kyriakos Ispoglou, Daniel Austin, Vishwath Mohan, and Mathias Payer. 2020. FuzzGen: Automatic Fuzzer Generation. 2271\u20132287. https:\/\/www.usenix.org\/conference\/usenixsecurity20\/presentation\/ispoglou"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2013.6606613"},{"key":"e_1_3_2_1_23_1","unstructured":"Dongge Liu Oliver Chang Jonathan Metzman Martin Sablotny and Mihai Maruseac. 2024. OSS-Fuzz-Gen: Automated Fuzz Target Generation. https:\/\/github.com\/google\/oss-fuzz-gen"},{"key":"e_1_3_2_1_24_1","volume-title":"Accessed","author":"Liu Dongge","year":"2023","unstructured":"Dongge Liu, Jonathan Metzman, Oliver Chang, and Google Open Source Security Team. 2023. AI-Powered Fuzzing: Breaking the Bug Hunting Barrier. https:\/\/security.googleblog.com\/2023\/08\/ai-powered-fuzzing-breaking-bug-hunting.html. Accessed January 22, 2026."},{"key":"e_1_3_2_1_25_1","unstructured":"Dongge Liu Jonathan Metzman Oliver Chang and Google Open Source Security Team. 2023. AI-Powered Fuzzing: Breaking the Bug Hunting Barrier. https:\/\/security.googleblog.com\/2023\/08\/ai-powered-fuzzing-breaking-bug-hunting.html"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP54263.2024.00011"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/3658644.3670396"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2019.2946563"},{"key":"e_1_3_2_1_29_1","unstructured":"Paul Marinescu. 2021. Autonomous testing of services at scale. https:\/\/engineering.fb.com\/2021\/10\/20\/developer-tools\/autonomous-testing\/"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/96267.96279"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","unstructured":"Siddharth Muralee Sourag Cherupattamoolayil James C. Davis Antonio Bianchi and Aravind Machiry. 2025. Reactive Bottom-Up Testing. arXiv:2509.03711 [cs] 10.48550\/arXiv.2509.03711","DOI":"10.48550\/arXiv.2509.03711"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/3688842"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/2889160.2889227"},{"key":"e_1_3_2_1_34_1","volume-title":"Ramos and Dawson Engler","author":"David","year":"2015","unstructured":"David A. Ramos and Dawson Engler. 2015. {Under-Constrained} Symbolic Execution: Correctness Checking for Real Code. 49\u201364. https:\/\/www.usenix.org\/conference\/usenixsecurity15\/technical-sessions\/presentation\/ramos"},{"key":"e_1_3_2_1_35_1","volume-title":"https:\/\/www.usenix.org\/conference\/usenixsecurity17\/technical-sessions\/presentation\/serebryany","author":"Serebryany Kostya","year":"2017","unstructured":"Kostya Serebryany. 2017. {OSS-Fuzz} - Google's continuous fuzzing service for open source software. (2017). https:\/\/www.usenix.org\/conference\/usenixsecurity17\/technical-sessions\/presentation\/serebryany"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE55347.2025.00239"},{"key":"e_1_3_2_1_37_1","unstructured":"Tyson Smith Jesse Schwartzentruber and Sylvestre Ledru. 2021. Browser fuzzing at Mozilla. https:\/\/blog.mozilla.org\/attack-and-defense\/2021\/05\/20\/browser-fuzzing-at-mozilla"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE-Companion66252.2025.00079"},{"key":"e_1_3_2_1_39_1","unstructured":"Cen Zhang Xingwei Lin Yuekang Li Yinxing Xue Jundong Xie Hongxu Chen Xinlei Ying Jiashui Wang and Yang Liu. 2021. APICraft: Fuzz Driver Generation for Closed-source SDK Libraries. 2811\u20132828. https:\/\/www.usenix.org\/conference\/usenixsecurity21\/presentation\/zhang-cen"},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1145\/3650212.3680355"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","unstructured":"Yuntong Zhang Jiawei Wang Dominic Berzin Martin Mirchev Dongge Liu Abhishek Arya Oliver Chang and Abhik Roychoudhury. 2024. Fixing Security Vulnerabilities with AI in OSS-Fuzz. arXiv:2411.03346 [cs] 10.48550\/arXiv.2411.03346","DOI":"10.48550\/arXiv.2411.03346"}],"event":{"name":"FSE Companion '26: 34th ACM International Conference on the Foundations of Software Engineering","location":"Concordia University Montreal QC Canada","acronym":"FSE Companion '26","sponsor":["SIGSOFT ACM Special Interest Group on Software Engineering"]},"container-title":["Proceedings of the 34th ACM International Conference on the Foundations of Software Engineering"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3803437.3805205","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,7,17]],"date-time":"2026-07-17T14:28:01Z","timestamp":1784298481000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3803437.3805205"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,7,5]]},"references-count":41,"alternative-id":["10.1145\/3803437.3805205","10.1145\/3803437"],"URL":"https:\/\/doi.org\/10.1145\/3803437.3805205","relation":{},"subject":[],"published":{"date-parts":[[2026,7,5]]},"assertion":[{"value":"2026-07-17","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}