Archer automates agentic code review for LLVM optimizations and reports finding semantic bugs in 21% of recent open PRs and 11% of closed PRs.
Facilitating vulnerability assessment through poc migration,
4 Pith papers cite this work, alongside 46 external citations. Polarity classification is still indexing.
fields
cs.SE 4representative citing papers
Refploit repairs code-agent trajectories for Java exploit reproduction via differential validation and focused recovery constraints, achieving 80.2% success on 172 references with 64.3% relative improvement.
ATTAIN is a three-module trace-driven framework that combines exploit execution, LLM-guided diff search, and evidence-based judgment to identify affected library versions for CVEs, reporting 93.24% F1 on 224 CVEs across 25,943 versions.
Empirical study finds Git references enable over 86% success in mapping NVD records to vulnerability-fixing commits while non-Git references succeed under 14%, yielding an automated pipeline and external mining that together cover only 11.3% of records at 87% precision.
citing papers explorer
-
Archer: Towards Agentic Review for Compiler Optimizations
Archer automates agentic code review for LLVM optimizations and reports finding semantic bugs in 21% of recent open PRs and 11% of closed PRs.
-
Refploit: Facilitating Exploit Construction via Code-Agent Trajectory Repair
Refploit repairs code-agent trajectories for Java exploit reproduction via differential validation and focused recovery constraints, achieving 80.2% success on 172 references with 64.3% relative improvement.
-
ATTAIN: Automated Exploit Failure Analysis through Trace-Driven Diff Analysis
ATTAIN is a three-module trace-driven framework that combines exploit execution, LLM-guided diff search, and evidence-based judgment to identify affected library versions for CVEs, reporting 93.24% F1 on 224 CVEs across 25,943 versions.
-
Mapping NVD Records to Their Vulnerability-fixing Commits: How Hard is It?
Empirical study finds Git references enable over 86% success in mapping NVD records to vulnerability-fixing commits while non-Git references succeed under 14%, yielding an automated pipeline and external mining that together cover only 11.3% of records at 87% precision.