No contest? No problem: all these security firms are hiring:
- @asymmetric_re : https://t.co/RCyRUgEDNk
- @Certora : https://t.co/1958qioS4J
- @chain_security : https://t.co/gM8Gye0wLg
- @OpenZeppelin : https://t.co/XyOFL315lf
- @trailofbits : https://t.co/nldaX0IfJz
- @zellic_io : https://t.co/ud7gtYC19g
I know firsthand that all of them have great people who will help you grow as a security researcher
The software that has been written so far is a tiny fraction of all software that will ever be written (likewise for hardware design), one of Adam Chlipala's many insightful observations. This caution against over-indexing on legacy code gives me hope that the power and potential of formal methods can be applied at scale to the development of new correct by construction software and hardware systems.
i love how people are saying "if we write a sufficiently detailed specification, the agent can write all our code"
do you know what writing a sufficiently detailed specification that deterministically maps to what a computer's actions is? it's coding
Looking for submitting your latest research at SAS 2026? Good news, submission deadline is extended to May 7, yet you still need paper registration by May 1 AoE (still some time left)
The Static Analysis Symposium (SAS) is taking place as a part of SPLASH/ISSTA this year! Consider submitting a paper, deadline *May 1st*, with special topics including Static Analysis and AI, and Static Analysis and Education:
https://t.co/R8CQTHHr3F
A special workshop celebrating Thomas Ball's 60th birthday and extraordinary impact in PL, SE, and formal methods will be held on June 16th at PLDI'26!
There is a great line up of speakers who will reflect on his work and lasting influence. Don't miss it! https://t.co/VjzXFKElFd
The Static Analysis Symposium (SAS) is taking place as a part of SPLASH/ISSTA this year! Consider submitting a paper, deadline *May 1st*, with special topics including Static Analysis and AI, and Static Analysis and Education:
https://t.co/R8CQTHHr3F
@Blackhoodie_RE will be at #BSidesLuxembourg, on May 6th with a training on Linux memory forensics 😍 Thank you to BSides Luxembourg and the Luxembourg House of Cyber for hosting us! Registration is now open https://t.co/BAPNrx6YNW
Finding backdoors in software is like hunting for a needle that’s actively trying to hide. 🪡🕵️
Check out our @fosdem talk with @plumtrie on using fuzzing to automate the search!
📺 Watch: https://t.co/jAjuugW2ic
📜 ICSE Paper: https://t.co/NUOF7zCtQn
RIP Tony Hoare. 😢
I only met him a couple times many years ago at MSR and was not accomplished enough at the time to have much useful to say, but he sure cast a long shadow over the field...
In case you're interested in AI for Math and don't already recognize Leonardo de Moura's name below.... he invented Lean at MSR a decade ago.
Give him a follow.
Last week, we wrapped up the #NDSSSymposium2026. While we’re sad it’s over, we couldn’t be happier with how it went. This year we had:
🌏 600+ attendees representing 30+ countries
🧑🏫 10 amazing workshops
📝 190+ papers presented
We can’t wait to see you again next year!
Breaking news from NDSS26: it seems that we have won a Distinguished Paper Award for "Decompiling the Synergy: An Empirical Study of Human-LLM Teaming in Software Reverse Engineering"
A giant thank you to my amazing co-authors and everyone who participated in the experiment!
UPDATE: our work won a best paper award 🏆 @NDSSSymposium! Check out our work on establishing the first measurements for understanding how LLMs are changing reverse engineering.
Shout out to the whole team from @SCAI_ASU, @EURECOM, and @UniPadova
Open source has allowed everyone from hobbyists to major companies to build software. But its ecosystem is getting overwhelmed.
Dr. William Enck broke down unique vulnerabilities of the software supply chain & shared how researchers can help developers build safer software.
This morning's keynote speaker, @danwallach, broke down how DARPA’s TRACTOR: Translating All C to Rust program is taking an all-hands-on-deck approach to solve the Internet's persistent and stubborn memory safety problem, once and for all. #NDSSSymposium2026
Excited to attend @NDSSSymposium and BAR workshop next week. Especially interested these days in automated fault injection analysis, exploitability analysis & vulnerability triage, side channels & PQC, and looking for collaborations on these topics.
The BAR workshop 2026 edition is next week @NDSSSymposium San Diego, featuring two awesome keynotes by @perribus and @pinkflawd together with 10 technical talks. Hoe to see you there!
https://t.co/w4eDyowboP