Section 01
[Introduction] VCAO: A Game Theory-Based Agent Orchestration System to Improve OS Vulnerability Discovery Efficiency
This paper proposes the VCAO (Verifier-Centered Agentic Orchestration) framework, which models OS vulnerability discovery as a Bayesian Stackelberg search game. It dynamically allocates analysis budgets via a large reasoning model orchestrator, combining verifiers like static analysis, fuzz testing, and memory detectors to achieve efficient automated vulnerability mining. The system performs excellently in Linux kernel vulnerability discovery, significantly outperforming existing methods.