Feb. 5, 2024, 6:44 a.m. | Piyush Jha Joseph Scott Jaya Sriram Ganeshna Mudit Singh Vijay Ganesh

cs.LG updates on arXiv.org arxiv.org

We present a novel tool BertRLFuzzer, a BERT and Reinforcement Learning (RL) based fuzzer aimed at finding security vulnerabilities for Web applications. BertRLFuzzer works as follows: given a set of seed inputs, the fuzzer performs grammar-adhering and attack-provoking mutation operations on them to generate candidate attack vectors. The key insight of BertRLFuzzer is the use of RL with a BERT model as an agent to guide the fuzzer to efficiently learn grammar-adhering and attack-provoking mutation operators. In order to establish …

applications bert cs.cr cs.lg cs.se generate grammar inputs insight key mutation novel operations reinforcement reinforcement learning security security vulnerabilities seed set the key them tool vectors vulnerabilities web

Lead Developer (AI)

@ Cere Network | San Francisco, US

Research Engineer

@ Allora Labs | Remote

Ecosystem Manager

@ Allora Labs | Remote

Founding AI Engineer, Agents

@ Occam AI | New York

AI Engineer Intern, Agents

@ Occam AI | US

AI Research Scientist

@ Vara | Berlin, Germany and Remote