{"id":"W3155466149","doi":"10.1109/sp40001.2021.00109","title":"StochFuzz: Sound and Cost-effective Fuzzing of Stripped Binaries by Incremental and Stochastic Rewriting","year":2021,"lang":"en","type":"article","venue":"","topic":"Software Testing and Debugging Techniques","field":"Computer Science","cited_by":32,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of Waterloo","funders":"","keywords":"Fuzz testing; Computer science; Rewriting; Probabilistic logic; Soundness; Binary translation; Programming language; Binary number; Static analysis; Process (computing); Algorithm; Artificial intelligence; Software","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.003058622,0.001500341,0.001108926,0.001591914,0.0007582054,0.001420039,0.003489839,0.001485644,0.003044254],"category_scores_gemma":[0.01814107,0.000966015,0.001533455,0.0008722254,0.002264821,0.002751855,0.002884397,0.002254735,0.001103994],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.001093052,"about_ca_system_score_gemma":0.002636872,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.003682121,"about_ca_topic_score_gemma":0.006307738,"domain_scores_codex":[0.995148,0.0009524032,0.0003273995,0.0007967384,0.002414799,0.0003605636],"domain_scores_gemma":[0.9867779,0.006632046,0.0008860687,0.004269135,0.001207642,0.0002272316],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.001024926,0.0004780874,0.0130622,0.001033377,0.0004213332,0.000711185,0.0005688582,0.2528862,0.09542292,0.02822118,0.01975643,0.5864134],"study_design_scores_gemma":[0.0001348557,0.00029203,0.001600418,0.00006197373,0.0001077993,0.0004637642,0.0000501283,0.9122443,0.05731872,0.02117997,0.006466109,0.00007998334],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"methods","genre_scores_codex":[0.05320387,0.0008852501,0.861758,0.0004218574,0.0001121556,0.0002644335,0.000527939,0.08054184,0.002284711],"genre_scores_gemma":[0.4517208,0.000360611,0.5374214,0.0005070667,0.00007676519,0.0002332825,0.001658627,0.005269641,0.002751736],"genre_candidate":"methods","genre_consensus":"methods","teacher_disagreement_score":0.003682121,"threshold_uncertainty_score":0.01617575,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.01639065877289114,"score_gpt":0.2672085166891789,"score_spread":0.2508178579162878,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}