Beyond Edge Coverage: Per-Task Data-Flow Extraction at Kernel Function Boundaries via LLVM
This paper introduces TOOLNAME, an LLVM-based instrumentation framework that extends Linux KCOV to capture per-task function argument and return value data-flow at kernel boundaries, thereby enabling context-aware fuzzing and efficient root-cause analysis without requiring source modifications or incurring significant runtime overhead.