AFLWalk is created, a variant of AFLNet, as an attempt to address the challenge of testing stateful protocols by focusing exclusively on message-sequence mutations to steer exploration through protocol state machines, rather than applying byte-level mutations such as bit-flipping.
. In recent years, protocol state fuzzing has emerged as an effective technique to analyze and test network protocol implementations, uncovering numerous security vulnerabilities, bugs, and non-conformance issues in them. This paper presents ProtocolState-Fuzzer ( PSF ), an open source, generic, modular, and extensible...
Konstantinos Sagonas, Thanos Typaldos· International Conference on...· 0 citations
SNIPTEST is an execution-based warning triage framework that generates and fuzzes compiled code slices centered around static-analysis warnings that employs a layer-by-layer slicing strategy, incrementally expanding context around the target location to validate potential vulnerabilities with increasing precision.
Aniruddhan Murali, Noble Saji Mathews, Mahmoud Alfadel et al.· IEEE Transactions on Softwar...· 0 citations
A stateful security verification methodology that combines stateful fuzzing with specification-guided security verification of the NG Application Protocol between the radio access network and the 5G core is proposed.
Seungjoon Na, Hwankuk Kim· Italian National Conference...· 0 citations
The security of the modern web depends on the correctness of JavaScript (JS) engines, yet these complex systems remain vulnerable to high-impact bugs. A critical limitation of state-of-the-art fuzzers is the coverage plateau: once a fuzzer saturates the control-flow graph, edge coverage loses its ability to guide disco...
Wai-Kin Wong, Dong-Wei Xiao, Anthony Cheuk Tung Lai et al.· 0 citations
A lightweight method for generating fuzz test cases under bytecode-level static guidance, and results indicate that static guidance, directed seed generation, and vulnerability-specific oracles each contribute to the final performance.
Splitting, a black-box wrapper that copies a fuzzer's queue state after a bug trigger and continues from that state in multiple branches, directing more effort toward the discovered region, provides a practical way to measure and improve fuzzers.
Zi-Rui Liu, Meng-Fan Xu, Juan Zhai et al.· 0 citations
We use cookies to run the site and, with your consent, for analytics and to show ads.
See our Cookie Policy.