Finding backdoors in software is like hunting for a needle that’s actively trying to hide. 🪡🕵️
Check out our FOSDEM talk on using fuzzing to automate the search!
📺 Watch: mirrors.dotsrc.org/fosdem/2026/...
📜 ICSE Paper: binsec.github.io/assets/publi...
Posts by Michaël Marcozzi
Mon co-bureau Matthieu qui défendait sa HDR hier ! www.linkedin.com/in/matthieu-...
Vue de Grenoble avec les montagnes en arrière plan et la rivière en avant plan
The Annual French Research Day on Software Testing will be held in beautiful Grenoble on Dec 11!
See you there! 😀
Info and registration: gdr-gpl.cnrs.fr?cat=25
Congrats @lesly-ann.bsky.social! 🙂
Happy to have presented our SECUBIC project to the French research community in system security (RESSI'25)!
🏠 secubic-ptcc.github.io
🧑🔬 Sébastien Bardin, Jean-Yves Marion, Stefano Zacchiroli
Thanks to the RESSI organizers who had even provided a pool to finish my #OOPSLA reviews! 😇
Check out our ROSARUM benchmark, part of our #icse2025 paper on backdoors and fuzzing:
▶️ It is a fuzzing benchmark (can fuzzers trigger backdoors reliably and fast?)
▶️ It is a backdoor detection benchmark (can code analyses find backdoors reliably?)
⬇️ github.com/binsec/rosarum
How to detect backdoors efficiently?
🗣️ The slides of our #icse2025 presentation on "Finding Backdoors with Fuzzing" are now available at
⬇️ binsec.github.io/assets/publi...
"Finding backdoors with fuzzing" --> presentation at @icseconf.bsky.social on Friday at 4pm by the great Dimitri Kokkonis!
👇
📢 I am looking for a postdoc on fuzzing, to prevent backdoors and supply-chain attacks!
Come and join the team here in Paris (or spread the word)! 🙂
Details and application: secubic-ptcc.github.io/jobs/open/20...
Thanks!
🏆 Our ROSA tool for backdoor detection has won a best artifact award at @icseconf.bsky.social!
Try it out: github.com/binsec/rosa
Huge thanks and congrats to my student Dimitri Kokkonis for his huge and great work! 👏👏👏
#FUZZING'25 Deadline Extension
──────
If you have not finished your #FUZZING paper yet, you are in luck! :) We decided to extend the deadline to March 26, 2025!
🔗 fuzzingworkshop.github.io
//cc @rohan.padhye.org, László Szekeres,
@ruijiemeng.bsky.social, @mboehme.bsky.social
Congrats to my PhD student Frank @fbusse.bsky.social for a successful viva! It's been wonderful working together all these years, and I'm looking forward to our next joint projects!
I am looking to recruit a PhD student (fully funded at UK home tuition rate) to work on automated testing and verification of machine learning compilers and runtimes! Deadline: 30th April. Please spread the word! Details here: www.doc.ic.ac.uk/~afd/PhD-Adv...
Our ROSA tool for backdoor detection is available!
Try it out! 👇
Tool: github.com/binsec/rosa
Benchmark: github.com/binsec/rosarum
This work received both Available & Reusable badges at @icseconf.bsky.social 🥳
Happy to read such enthusiastic reactions to our @icseconf.bsky.social paper! ☺️
"ROSA Sets a New Standard for Backdoor Detection."
"If you work in cybersecurity, penetration testing, or software auditing, ROSA is a must-try in the fight against hidden threats."
medium.com/@itsissachar...
How to detect backdoors efficiently?
▶️ Backdoors were found in firmware & open-source code
▶️ Detection requires much manual reverse-engineering
▶️ Fuzzers cannot see backdoors
Our @icseconf.bsky.social preprint on finding backdoors with fuzzing is at binsec.github.io/nutshells/ic...
I am happy to welcome Andy Zalcman as a new PhD student on better fuzzing guidance!
Looking forward to doing fun research together! 🥳
Details: binsec.github.io/people/zalcm...
Thanks!
🥳📰 Very happy and proud that our paper on finding backdoors with fuzzing was accepted at the main track of @icseconf.bsky.social!
More details to follow soon 🙂
Congratulations and thank you to my students Dimitri Kokkonis and Emilien Decoux and co-supervisor Stefano Zacchiroli!
Thank you @mu00d8.bsky.social for presenting your work on improving fuzzer evaluation practices to our team's webinar!
This was an enlighting talk and I recommend every fuzzing person to check out the corresponding paper (Distinguished Paper award at S&P'24)!
oaklandsok.github.io/papers/schlo...
Trying and building a list of CS research people on Bluesky...
bsky.app/profile/mich...