{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:DSEQGYJAJTFSQW5QOWESOK5DDS","short_pith_number":"pith:DSEQGYJA","schema_version":"1.0","canonical_sha256":"1c890361204ccb285bb07589272ba31c90bbc929cdaf9cfc7dbceaa4782a7e9a","source":{"kind":"arxiv","id":"2411.03346","version":2},"attestation_state":"computed","paper":{"title":"Fixing Security Vulnerabilities with AI in OSS-Fuzz","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.SE"],"primary_cat":"cs.CR","authors_text":"Abhik Roychoudhury, Abhishek Arya, Dominic Berzin, Dongge Liu, Jiawei Wang, Martin Mirchev, Oliver Chang, Yuntong Zhang","submitted_at":"2024-11-03T16:20:32Z","abstract_excerpt":"Critical open source software systems undergo significant validation in the form of lengthy fuzz campaigns. The fuzz campaigns typically conduct a biased random search over the domain of program inputs, to find inputs which crash the software system. Such fuzzing is useful to enhance the security of software systems in general since even closed source software may use open source components. Hence testing open source software is of paramount importance. Currently OSS-Fuzz is the most significant and widely used infrastructure for continuous validation of open source systems. Unfortunately even"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2411.03346","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2024-11-03T16:20:32Z","cross_cats_sorted":["cs.SE"],"title_canon_sha256":"f6ed34b3e58fe1601e6a94445a6fd2d310976edffbd671608783330d134a0da1","abstract_canon_sha256":"272df57b2f1c66ca75e9d3b3a48739834c272d4a69a87386c7c2e3341041b3d2"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T09:38:32.025384Z","signature_b64":"Gfp1H7/W4GDFh1IgKd/Gt5LOn02tbp0CSFbKlZj9/TsoFiNaOjZWMsHFyB34CQ0Gi+cHWYYO6LYeRIpvqcSCAA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"1c890361204ccb285bb07589272ba31c90bbc929cdaf9cfc7dbceaa4782a7e9a","last_reissued_at":"2026-07-05T09:38:32.024884Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T09:38:32.024884Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Fixing Security Vulnerabilities with AI in OSS-Fuzz","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.SE"],"primary_cat":"cs.CR","authors_text":"Abhik Roychoudhury, Abhishek Arya, Dominic Berzin, Dongge Liu, Jiawei Wang, Martin Mirchev, Oliver Chang, Yuntong Zhang","submitted_at":"2024-11-03T16:20:32Z","abstract_excerpt":"Critical open source software systems undergo significant validation in the form of lengthy fuzz campaigns. The fuzz campaigns typically conduct a biased random search over the domain of program inputs, to find inputs which crash the software system. Such fuzzing is useful to enhance the security of software systems in general since even closed source software may use open source components. Hence testing open source software is of paramount importance. Currently OSS-Fuzz is the most significant and widely used infrastructure for continuous validation of open source systems. Unfortunately even"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2411.03346","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2411.03346/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2411.03346","created_at":"2026-07-05T09:38:32.024943+00:00"},{"alias_kind":"arxiv_version","alias_value":"2411.03346v2","created_at":"2026-07-05T09:38:32.024943+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2411.03346","created_at":"2026-07-05T09:38:32.024943+00:00"},{"alias_kind":"pith_short_12","alias_value":"DSEQGYJAJTFS","created_at":"2026-07-05T09:38:32.024943+00:00"},{"alias_kind":"pith_short_16","alias_value":"DSEQGYJAJTFSQW5Q","created_at":"2026-07-05T09:38:32.024943+00:00"},{"alias_kind":"pith_short_8","alias_value":"DSEQGYJA","created_at":"2026-07-05T09:38:32.024943+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2604.05130","citing_title":"A Multi-Agent Framework for Automated Exploit Generation with Constraint-Guided Comprehension and Reflection","ref_index":55,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/DSEQGYJAJTFSQW5QOWESOK5DDS","json":"https://pith.science/pith/DSEQGYJAJTFSQW5QOWESOK5DDS.json","graph_json":"https://pith.science/api/pith-number/DSEQGYJAJTFSQW5QOWESOK5DDS/graph.json","events_json":"https://pith.science/api/pith-number/DSEQGYJAJTFSQW5QOWESOK5DDS/events.json","paper":"https://pith.science/paper/DSEQGYJA"},"agent_actions":{"view_html":"https://pith.science/pith/DSEQGYJAJTFSQW5QOWESOK5DDS","download_json":"https://pith.science/pith/DSEQGYJAJTFSQW5QOWESOK5DDS.json","view_paper":"https://pith.science/paper/DSEQGYJA","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2411.03346&json=true","fetch_graph":"https://pith.science/api/pith-number/DSEQGYJAJTFSQW5QOWESOK5DDS/graph.json","fetch_events":"https://pith.science/api/pith-number/DSEQGYJAJTFSQW5QOWESOK5DDS/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/DSEQGYJAJTFSQW5QOWESOK5DDS/action/timestamp_anchor","attest_storage":"https://pith.science/pith/DSEQGYJAJTFSQW5QOWESOK5DDS/action/storage_attestation","attest_author":"https://pith.science/pith/DSEQGYJAJTFSQW5QOWESOK5DDS/action/author_attestation","sign_citation":"https://pith.science/pith/DSEQGYJAJTFSQW5QOWESOK5DDS/action/citation_signature","submit_replication":"https://pith.science/pith/DSEQGYJAJTFSQW5QOWESOK5DDS/action/replication_record"}},"created_at":"2026-07-05T09:38:32.024943+00:00","updated_at":"2026-07-05T09:38:32.024943+00:00"}