XIAO
profile photo

Xiao Cheng

Xiao Cheng is a lecturer (~U.S.Assistant Professor) at School of Computing, Faculty of Science and Engineering, Macquarie University. His research lies at the intersection of Programming Languages (PL) and Software Engineering (SE), focusing on enhancing the security and reliability of modern software systems through program analysis and verification techniques, including abstract interpretation, typestate analysis, IFDS, sparse value-flow analysis and fuzz testing. He is also exploring the integration of artificial intelligence, such as graph neural networks, language models and uncertainty quantification, with classical PL/SE tasks to further enhance these domains.

His papers have been published in top-tier conferences and journals in the field of software engineering (TOSEM, FSE, ICSE, ISSTA), programming languages (OOPSLA) and security (S&P, NDSS, TDSC), and awarded ACM SIGSOFT Distinguished Paper Award for FSE 2024 and ACM SIGPLAN Distinguished Paper Award for OOPSLA 2020. He is one of the major contributors of the SVF project and the author of the DeepWukong project. He is serving or has served as TPC member for ICSE 2027, ASE 2026, ISSTA 2026, FSE 2026, ISSRE 2025, PAKDD 2026/2025, ACISP 2026, APSEC 2025 (SEIP), LMPL 2025, FSE 2025 (SRC), ISSRE 2024 (DS track), and artifact evaluation committee members for ICSE 2025, ISSTA 2024/2023, SAS 2023 and FormaliSE 2025/2024/2023.

CV  /  Google Scholar  /  CMS Profile  /  Github  /  ORCID  /  Twitter

📜 Openings: I am looking for self-motivated PhD/MRes students, research assistants, and visiting students/scholars to work on program analysis, software security, and AI for SE. See details →

News

Research Directions

Publications

(# Equal contribution,  * Corresponding author)

Preprints

Selected Publications

2026 {{s26 ? '▾' : '▸'}}
  • [C14] PUFFERDOS: Efficient and Effective Attack String Generation for Regular Expression Denial of Service Vulnerabilities CORE-A* CCF-A
    Shangzhi Xu, Ziqi Ding, Xiao Cheng*, Yuekang Li, Nan Sun, Benjamin Turnbull, Shuangxiang Kan, Siqi Ma*.
    S&P '26 (acceptance rate: 135/1070=12.62%) PDF Slides
  • [C13] TLR: Codebase-Level C Memory Management Error Repair with Large Language Models CORE-A* CCF-A
    Xiao Cheng#, Zhihao Guo#, Huan Huo, Yulei Sui.
    FSE '26 (acceptance rate: 87/920=9.46%) PDF Slides
  • [C12] MUTATO: Enhancing Fuzz Drivers with Adaptive API Option Mutation CORE-A* CCF-A
    Shuangxiang Kan, Xiao Cheng*, Yuekang Li.
    NDSS '26 PDF Slides
  • [C11] SpecGuru: Hierarchical LLM-Driven API Points-to Specification Generation with Self-Validation CORE-A* CCF-A
    Shuangxiang Kan, Yuekang Li, Xiao Cheng*, Yulei Sui.
    ICSE '26 PDF Slides BIB
2025 {{s25 ? '▾' : '▸'}}
  • [C10] Efficient Abstract Interpretation via Selective Widening CORE-A CCF-A
    Jiawei Wang#, Xiao Cheng#, Yulei Sui.
    OOPSLA '25 PDF Slides BIB
  • [C8] Mitigating Emergent Malware Label Noise in DNN-Based Android Malware Detection CORE-A* CCF-A
    Haodong Li#, Xiao Cheng#, Guohan Zhang*, Guosheng Xu, Guoai Xu and Haoyu Wang*.
    FSE '25 (acceptance rate: 70/612=11.44%) PDF Slides BIB
  • [C7] Understanding Model Weaknesses: A Path to Strengthening DNN-Based Android Malware Detection CORE-A* CCF-A
    Haodong Li, Xiao Cheng*, Yanjie Zhao, Guosheng Xu, Guoai Xu and Haoyu Wang*.
    ISSTA '25 (acceptance rate: 23/553=4.16%) PDF Slides BIB
2024 {{s24 ? '▾' : '▸'}}
  • [C6] Fast Graph Simplification for Path-Sensitive Typestate Analysis through Tempo-Spatial Multi-Point Slicing CORE-A* CCF-A ACM SIGSOFT Distinguished Paper AWARD
    Xiao Cheng, Jiawei Ren, Yulei Sui
    FSE '24 PDF Slides BIB
  • [C5] Precise Sparse Abstract Execution via Cross-Domain Interaction CORE-A* CCF-A
    Xiao Cheng, Jiawei Wang, Yulei Sui
    ICSE '24 PDF Slides BIB
2022 {{s22 ? '▾' : '▸'}}
  • [C3] Path-Sensitive Code Embedding via Contrastive Learning for Software Vulnerability Detection CORE-A* CCF-A
    Xiao Cheng, Guanqin Zhang, Haoyu Wang and Yulei Sui
    ISSTA '22 PDF Slides BIB
2020 {{s20 ? '▾' : '▸'}}
  • [C2] Flow2Vec: Value-Flow-Based Precise Code Embedding CORE-A* CCF-A ACM SIGPLAN Distinguished Paper AWARD
    Yulei Sui, Xiao Cheng, Guanqin Zhang and Haoyu Wang
    OOPSLA '20 PDF BIB

Full List →

Services

Teaching Experience

Tools

Education

Awards

Misc

Welcome to use this website's source code, just add a link back to here. .