One Pipeline Does Not Fit All: TAILOR, a Type- and State-Aware Framework for CVE Reproduction
cs.CR
Submitted: 2026-09-29
Updated: 2026-09-29
Terminology
Sources
- ARVO: Atlas of Reproducible Vulnerabilities for Open-Source Software
- From CVE Entries to Verifiable Exploits: An Automated Multi-Agent Framework for Reproducing CVEs
- Frontier AI's Impact on the Cybersecurity Landscape
- SoK: DARPA's AI Cyber Challenge (AIxCC): Competition Design, Architectures, and Lessons Learned
- LLM Agents for Automated Web Vulnerability Reproduction: Are We There Yet?
- Automated Vulnerability Validation and Verification: A Large Language Model Approach
- Patch-to-PoC: A Systematic Study of Agentic LLM Systems for Linux Kernel N-Day Reproduction
- PatchPilot: A Cost-Efficient Software Engineering Agent with Early Attempts on Formal Verification
- Program Analysis Guided LLM Agent for Proof-of-Concept Generation
- FaultLine: Automated Proof-of-Vulnerability Generation Using LLM Agents
- A Dual-Loop Agent Framework for Automated Vulnerability Reproduction
- AXE: Grey-Box Exploitability Confirmation for Localized Vulnerability Reports
- LLM-based Agents Suffer from Hallucinations: A Survey of Taxonomy, Methods, and Directions
- MIRAGE-Bench: LLM Agent is Hallucinating and Where to Find Them
Related papers
- SoK: AI-Augmented Binary Reversing
- Relaxed Sender Anonymity for CBDC Interbank Settlement: A Zero-Knowledge Approach on Permissioned EVM
- Calibration-Family Overfit: Why Trusted Sabotage Monitors Don't Transfer Across Lineages
- Efficient Fuzzy PSI under One-Sided Assumptions
- Sealing the Audit-Runtime Gap for LLM Skills
- Token Composition: A Graph Based on EVM Logs