Publications

A collection of my research work.

A Survey of Operating System Kernel Fuzzing

Jiacheng Xu, He Sun, Shihao Jiang, Qinying Wang, Mingming Zhang, Xiang Li, Kaiwen Shen, Charles Zhang, Shouling Ji, Peng Cheng, Jiming Chen

ACM Trans. on Software Engineering and Methodology (TOSEM 2025)

DOI

Waltzz: WebAssembly Runtime Fuzzing with Stack-Invariant Transformation

Lingming Zhang, Binbin Zhao, Jiacheng Xu, Peiyu Liu, Qinge Xie, Yuan Tian, Jianhai Chen, Shouling Ji

In Proceedings of the 34th USENIX Security Symposium (USENIX Security 2025)

Concurrency Testing in the Linux Kernel via eBPF

Jiacheng Xu, Dylan Wolff, Xing Yi Han, Jialin Li, Abhik Roychoudhury

CoRR

DOI

Critical Code Guided Directed Greybox Fuzzing for Commits

Yi Xiang, Xuhong Zhang, Peiyu Liu, Shouling Ji, Xiao Xiao, Hong Liang, Jiacheng Xu, Wenhai Wang

In Proceedings of the 33rd USENIX Security Symposium (USENIX Security 2024)

Code

MOCK: Optimizing Kernel Fuzzing Mutation with Context-aware Dependency

Jiacheng Xu, Xuhong Zhang, Shouling Ji, Yuan Tian, Binbin Zhao, Qinying Wang, Peng Cheng, Jiming Chen

In Proceedings of the 31st Network and Distributed System Security Symposium (NDSS 2024)

DOICode

One Bad Apple Spoils the Barrel: Understanding the Security Risks Introduced by Third-Party Components in IoT Firmware

Binbin Zhao, Shouling Ji, Jiacheng Xu, Yuan Tian, Qiuyang Wei, Qinying Wang, Chenyang Lyu, Xuhong Zhang, Changting Lin, Jingzheng Wu, Raheem Beyah

IEEE Trans. on Dependable and Secure Computing (TDSC 2024)

DOI

MINER: A Hybrid Data-Driven Approach for REST API Fuzzing

Chenyang Lyu, Jiacheng Xu, Shouling Ji, Xuhong Zhang, Qinying Wang, Binbin Zhao, Gaoning Pan, Wei Cao, Peng Cheng, Raheem Beyah

In Proceedings of the 32nd USENIX Security Symposium (USENIX Security 2023)

Code

A Large-scale Empirical Analysis of the Vulnerabilities Introduced by Third-party Components in IoT Firmware

Binbin Zhao, Shouling Ji, Jiacheng Xu, Yuan Tian, Qiuyang Wei, Qinying Wang, Chenyang Lyu, Xuhong Zhang, Changting Lin, Jingzheng Wu, Raheem Beyah

Proceedings of the 31st ACM SIGSOFT International Symposium on Software Testing and Analysis (ISSTA 2022)

DOICode