BEGIN:VCALENDAR
PRODID:-//planitpurple.northwestern.edu//iCalendar Event//EN
VERSION:2.0
CALSCALE:GREGORIAN
METHOD:PUBLISH
CLASS:PUBLIC
BEGIN:VTIMEZONE
TZID:America/Chicago
TZURL:http://tzurl.org/zoneinfo-outlook/America/Chicago
X-LIC-LOCATION:America/Chicago
BEGIN:DAYLIGHT
TZOFFSETFROM:-0600
TZOFFSETTO:-0500
TZNAME:CDT
DTSTART:19700308T020000
RRULE:FREQ=YEARLY;BYMONTH=3;BYDAY=2SU
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:-0500
TZOFFSETTO:-0600
TZNAME:CST
DTSTART:19701101T020000
RRULE:FREQ=YEARLY;BYMONTH=11;BYDAY=1SU
END:STANDARD
END:VTIMEZONE
BEGIN:VEVENT
SEQUENCE:0
DTSTART;TZID=America/Chicago:20260910T140000
DTEND;TZID=America/Chicago:20260910T170000
DTSTAMP:20260908T135153Z
SUMMARY:Michael Polinski CS PhD Prospectus: Reflections on Trusting Numbers: Attacking and Defending Scientific Software
UID:645715@northwestern.edu
TZID:America/Chicago
DESCRIPTION:How vulnerable to input-driven attacks are the large applications used for computational science? Can these attacks be mitigated? Despite growing concerns about the security of scientific software\, no work has empirically evaluated its resistance to adversarial input\, and efforts to address concerns of correctness in scientific software are not currently applicable to mitigating vulnerabilities. This thesis begins to address these gaps.     I apply standard fuzzing and triage tools to demonstrate that large\, open-source scientific applications are highly exploitable through their inputs with ready avenues to arbitrary code execution and thus full control over program output. Next\, I implement Crucible\, a novel grammar-based fuzzer that searches for small input perturbations\, or “nudges”\, permitting an adversary to steer the numerical results of such applications by orders of magnitude without relying on conventional vulnerabilities.     I propose an expansion of the scope of my studies to include additional applications\, variants of attack\, and bug detection techniques. I further propose assessing the extent to which formal specification and AI-assisted proof construction could help mitigate – or rule out – a subset of these vulnerabilities\, such as the discovered numerical “nudging attacks”.\n\nWebcast Link: https://northwestern.zoom.us/j/92662091319?pwd=ggGHIKAeAiHPYd2Uhmhu1B2I9M396p.1
LOCATION:Mudd Hall ( formerly Seeley G. Mudd Library)\, 3514\, 2233 Tech Drive\, Evanston\, IL 60208
TRANSP:OPAQUE
URL:https://planitpurple.northwestern.edu/event/645715
CREATED:20260903T050000Z
STATUS:CONFIRMED
LAST-MODIFIED:20260903T050000Z
PRIORITY:0
BEGIN:VALARM
TRIGGER:-PT10M
ACTION:DISPLAY
DESCRIPTION:Reminder
END:VALARM
END:VEVENT
END:VCALENDAR