[Open Mic] Don’t Trust the Claim: Reproducible Firmware Evidence with WedgeBench

Main Room // Grote Zaal,

“It passed on my laptop.” What can the next maintainer actually verify?

WedgeBench is an open-source workflow that turns bounded malformed-input parser tests into reproducible, machine-checkable evidence. It combines a deterministic corpus, thin target adapters, structured artifacts, and validation.

I’ll walk through the go-tcg-storage reference integration, deliberately alter a copy of the evidence, and show the validator rejecting the mismatch. We’ll examine what PASS establishes—and why it does not certify firmware safety, authenticate the author, or validate physical hardware.

This complements fuzzing; it does not replace it. You’ll leave with a public workflow to try and a concrete pattern for maintainer handoffs. Bring your skepticism: challenge the assumptions, find a mutation the validator should reject but accepts, or nominate the next real target.

Don’t trust the claim. Run the workflow.