{"id":"https://openalex.org/W7152669679","doi":"https://doi.org/10.1145/3774904.3792541","title":"SemFuzz: A Semantics-Aware Fuzzing Framework for Network Protocol Implementations","display_name":"SemFuzz: A Semantics-Aware Fuzzing Framework for Network Protocol Implementations","publication_year":2026,"publication_date":"2026-04-09","ids":{"openalex":"https://openalex.org/W7152669679","doi":"https://doi.org/10.1145/3774904.3792541"},"language":null,"primary_location":{"id":"doi:10.1145/3774904.3792541","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3774904.3792541","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the ACM Web Conference 2026","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://doi.org/10.1145/3774904.3792541","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Yanbang Sun","orcid":"https://orcid.org/0009-0005-6047-1554"},"institutions":[{"id":"https://openalex.org/I162868743","display_name":"Tianjin University","ror":"https://ror.org/012tb2g32","country_code":"CN","type":"education","lineage":["https://openalex.org/I162868743"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Yanbang Sun","raw_affiliation_strings":["Tianjin University, Tianjin, China"],"raw_orcid":"https://orcid.org/0009-0005-6047-1554","affiliations":[{"raw_affiliation_string":"Tianjin University, Tianjin, China","institution_ids":["https://openalex.org/I162868743"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5133302011","display_name":"Quan Luo","orcid":"https://orcid.org/0009-0008-7208-9338"},"institutions":[{"id":"https://openalex.org/I4210127996","display_name":"Sino Biological (China)","ror":"https://ror.org/02tbjbv63","country_code":"CN","type":"company","lineage":["https://openalex.org/I4210127996"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Quan Luo","raw_affiliation_strings":["QI-ANXIN Codesafe Team, Beijing, China"],"raw_orcid":"https://orcid.org/0009-0008-7208-9338","affiliations":[{"raw_affiliation_string":"QI-ANXIN Codesafe Team, Beijing, China","institution_ids":["https://openalex.org/I4210127996"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5133272216","display_name":"Yuelin Wang","orcid":"https://orcid.org/0009-0003-2980-0220"},"institutions":[{"id":"https://openalex.org/I162868743","display_name":"Tianjin University","ror":"https://ror.org/012tb2g32","country_code":"CN","type":"education","lineage":["https://openalex.org/I162868743"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuelin Wang","raw_affiliation_strings":["Tianjin University, Tianjin, China"],"raw_orcid":"https://orcid.org/0009-0003-2980-0220","affiliations":[{"raw_affiliation_string":"Tianjin University, Tianjin, China","institution_ids":["https://openalex.org/I162868743"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5133297588","display_name":"Qian Chen","orcid":"https://orcid.org/0009-0003-4832-3298"},"institutions":[{"id":"https://openalex.org/I4210127996","display_name":"Sino Biological (China)","ror":"https://ror.org/02tbjbv63","country_code":"CN","type":"company","lineage":["https://openalex.org/I4210127996"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qian Chen","raw_affiliation_strings":["QI-ANXIN Codesafe Team, Beijing, China"],"raw_orcid":"https://orcid.org/0009-0003-4832-3298","affiliations":[{"raw_affiliation_string":"QI-ANXIN Codesafe Team, Beijing, China","institution_ids":["https://openalex.org/I4210127996"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5133292272","display_name":"Benjin Liu","orcid":"https://orcid.org/0009-0000-7883-6332"},"institutions":[{"id":"https://openalex.org/I4210127996","display_name":"Sino Biological (China)","ror":"https://ror.org/02tbjbv63","country_code":"CN","type":"company","lineage":["https://openalex.org/I4210127996"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Benjin Liu","raw_affiliation_strings":["QI-ANXIN Codesafe Team, Beijing, China"],"raw_orcid":"https://orcid.org/0009-0000-7883-6332","affiliations":[{"raw_affiliation_string":"QI-ANXIN Codesafe Team, Beijing, China","institution_ids":["https://openalex.org/I4210127996"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5133291109","display_name":"Ruiqi Chen","orcid":"https://orcid.org/0009-0003-7035-5501"},"institutions":[{"id":"https://openalex.org/I4210127996","display_name":"Sino Biological (China)","ror":"https://ror.org/02tbjbv63","country_code":"CN","type":"company","lineage":["https://openalex.org/I4210127996"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ruiqi Chen","raw_affiliation_strings":["QI-ANXIN Codesafe Team, Beijing, China"],"raw_orcid":"https://orcid.org/0009-0003-7035-5501","affiliations":[{"raw_affiliation_string":"QI-ANXIN Codesafe Team, Beijing, China","institution_ids":["https://openalex.org/I4210127996"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Qing Huang","orcid":"https://orcid.org/0000-0002-8877-4267"},"institutions":[{"id":"https://openalex.org/I53592917","display_name":"Jiangxi Normal University","ror":"https://ror.org/05nkgk822","country_code":"CN","type":"education","lineage":["https://openalex.org/I53592917"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qing Huang","raw_affiliation_strings":["Jiangxi Normal University, Nanchang, China"],"raw_orcid":"https://orcid.org/0000-0002-8877-4267","affiliations":[{"raw_affiliation_string":"Jiangxi Normal University, Nanchang, China","institution_ids":["https://openalex.org/I53592917"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5105683956","display_name":"XiaoHong Li","orcid":null},"institutions":[{"id":"https://openalex.org/I162868743","display_name":"Tianjin University","ror":"https://ror.org/012tb2g32","country_code":"CN","type":"education","lineage":["https://openalex.org/I162868743"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaohong Li","raw_affiliation_strings":["Tianjin University, Tianjin, China"],"raw_orcid":"https://orcid.org/0000-0002-0752-6764","affiliations":[{"raw_affiliation_string":"Tianjin University, Tianjin, China","institution_ids":["https://openalex.org/I162868743"]}]},{"author_position":"last","author":{"id":null,"display_name":"Junjie Wang","orcid":"https://orcid.org/0009-0002-3847-6760"},"institutions":[{"id":"https://openalex.org/I162868743","display_name":"Tianjin University","ror":"https://ror.org/012tb2g32","country_code":"CN","type":"education","lineage":["https://openalex.org/I162868743"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Junjie Wang","raw_affiliation_strings":["Tianjin University, Tianjin, China"],"raw_orcid":"https://orcid.org/0009-0002-3847-6760","affiliations":[{"raw_affiliation_string":"Tianjin University, Tianjin, China","institution_ids":["https://openalex.org/I162868743"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":9,"corresponding_author_ids":[],"corresponding_institution_ids":["https://openalex.org/I162868743"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.8296455,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"3251","last_page":"3262"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10714","display_name":"Software-Defined Networks and 5G","score":0.7057999968528748,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10714","display_name":"Software-Defined Networks and 5G","score":0.7057999968528748,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10651","display_name":"IPv6, Mobility, Handover, Networks, Security","score":0.04399999976158142,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12326","display_name":"Network Packet Processing and Optimization","score":0.04149999842047691,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/protocol","display_name":"Protocol (science)","score":0.5541999936103821},{"id":"https://openalex.org/keywords/fuzz-testing","display_name":"Fuzz testing","score":0.51419997215271},{"id":"https://openalex.org/keywords/implementation","display_name":"Implementation","score":0.49549999833106995},{"id":"https://openalex.org/keywords/communications-protocol","display_name":"Communications protocol","score":0.3650999963283539},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.2924000024795532},{"id":"https://openalex.org/keywords/protocol-analysis","display_name":"Protocol analysis","score":0.2897000014781952}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6929000020027161},{"id":"https://openalex.org/C2780385302","wikidata":"https://www.wikidata.org/wiki/Q367158","display_name":"Protocol (science)","level":3,"score":0.5541999936103821},{"id":"https://openalex.org/C111065885","wikidata":"https://www.wikidata.org/wiki/Q1189053","display_name":"Fuzz testing","level":3,"score":0.51419997215271},{"id":"https://openalex.org/C26713055","wikidata":"https://www.wikidata.org/wiki/Q245962","display_name":"Implementation","level":2,"score":0.49549999833106995},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.4675000011920929},{"id":"https://openalex.org/C12269588","wikidata":"https://www.wikidata.org/wiki/Q132364","display_name":"Communications protocol","level":2,"score":0.3650999963283539},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.2924000024795532},{"id":"https://openalex.org/C133112747","wikidata":"https://www.wikidata.org/wiki/Q7251931","display_name":"Protocol analysis","level":2,"score":0.2897000014781952},{"id":"https://openalex.org/C168167062","wikidata":"https://www.wikidata.org/wiki/Q1117970","display_name":"Component (thermodynamics)","level":2,"score":0.2624000012874603},{"id":"https://openalex.org/C65567647","wikidata":"https://www.wikidata.org/wiki/Q81414","display_name":"Internet protocol suite","level":3,"score":0.25929999351501465},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.2547000050544739}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3774904.3792541","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3774904.3792541","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the ACM Web Conference 2026","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3774904.3792541","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3774904.3792541","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the ACM Web Conference 2026","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":18,"referenced_works":["https://openalex.org/W1859864512","https://openalex.org/W2795354477","https://openalex.org/W2915352631","https://openalex.org/W2980273018","https://openalex.org/W3047947484","https://openalex.org/W3125053552","https://openalex.org/W3207926955","https://openalex.org/W3212565000","https://openalex.org/W4220830491","https://openalex.org/W4221162427","https://openalex.org/W4232271737","https://openalex.org/W4286331376","https://openalex.org/W4287849789","https://openalex.org/W4288057700","https://openalex.org/W4387321771","https://openalex.org/W4391724785","https://openalex.org/W4402264433","https://openalex.org/W4402696986"],"related_works":[],"abstract_inverted_index":{"Network":[0],"protocols":[1],"are":[2,56],"the":[3,110,114,138,154],"foundation":[4],"of":[5,19,31,132,156],"modern":[6],"communication,":[7],"yet":[8],"their":[9],"implementations":[10,123],"often":[11],"contain":[12],"semantic":[13,29,61,83,106,160],"vulnerabilities":[14,107],"stemming":[15],"from":[16,85],"inadequate":[17,57],"understanding":[18],"specification":[20],"semantics.":[21],"Existing":[22],"gray-box":[23],"and":[24,41,88,145],"black-box":[25],"testing":[26,39,100],"approaches":[27],"lack":[28],"modeling":[30],"protocols,":[32],"making":[33],"it":[34],"difficult":[35],"to":[36,80,97],"precisely":[37],"express":[38],"intent":[40],"cover":[42],"boundary":[43],"conditions.":[44],"Moreover,":[45],"they":[46],"typically":[47],"rely":[48],"on":[49,118],"coarse-grained":[50],"oracles":[51],"such":[52],"as":[53],"crashes,":[54],"which":[55,133],"for":[58],"identifying":[59],"deep":[60,105],"vulnerabilities.":[62,161],"To":[63],"address":[64],"these":[65,95],"limitations,":[66],"we":[67],"present":[68],"a":[69],"semantics-aware":[70],"fuzzing":[71],"framework,":[72],"SemFuzz.":[73],"The":[74],"framework":[75],"leverages":[76],"large":[77],"language":[78],"models":[79],"extract":[81],"structured":[82],"rules":[84,96],"RFC":[86],"documents":[87],"generates":[89],"test":[90],"cases":[91],"that":[92,125],"intentionally":[93],"violate":[94],"encode":[98],"specific":[99],"intents.":[101],"It":[102],"then":[103],"detects":[104],"by":[108],"comparing":[109],"observed":[111],"responses":[112],"with":[113],"expected":[115],"ones.":[116],"Evaluation":[117],"seven":[119],"widely":[120],"deployed":[121],"protocol":[122],"shows":[124],"SemFuzz":[126,157],"identified":[127],"sixteen":[128],"potential":[129],"vulnerabilities,":[130,140],"ten":[131],"have":[134,147],"been":[135,148],"confirmed.":[136],"Among":[137],"confirmed":[139],"five":[141],"were":[142],"previously":[143],"unknown":[144],"four":[146],"assigned":[149],"CVEs.":[150],"These":[151],"results":[152],"demonstrate":[153],"effectiveness":[155],"in":[158],"detecting":[159]},"counts_by_year":[],"updated_date":"2026-04-25T08:17:42.794288","created_date":"2026-04-10T00:00:00"}
