Skip to content
Review Open access

Fuzzing-Based Verification of Hardware Designs: A Comprehensive Survey

2026 · IEEE Access · Vol 14, pp. 100456-100476 · 1 citation · 108 references
Computer Science

TL;DR

This survey presents a comprehensive overview of state-of-the-art hardware fuzzing research, examining how existing hardware fuzzing approaches differ in their fundamental approaches to test generation, simulation infrastructure, mutation strategy, coverage feedback, and bug detection.

Abstract

As modern hardware systems grow in complexity, traditional pre-silicon verification techniques increasingly struggle to expose deep corner-case behaviors and security-relevant bugs that can persist across the entire lifetime of deployed silicon. In response, hardware fuzzing has emerged as a promising complement to traditional verification approaches, adapting the principles of software fuzzing to systematically explore hardware state spaces and uncover functional bugs, security flaws, and corner-case behaviors in increasingly complex digital designs. Despite growing interest in this field, existing survey efforts remain fragmented, often focusing narrowly on specific hardware targets or fuzzing techniques, and fail to provide a comprehensive overview of the broader hardware fuzzing landscape. Motivated by these gaps, this survey presents a comprehensive overview of state-of-the-art hardware fuzzing research, examining how existing hardware fuzzing approaches differ in their fundamental approaches to test generation, simulation infrastructure, mutation strategy, coverage feedback, and bug detection. We organize prior fuzzing techniques across diverse hardware designs, including processors, Systems-on-Chip (SoCs), Intellectual Property (IP) blocks, and categorize them into five principal categories. We further identify the key trends driving the field forward, analyze the persistent open challenges, and highlight promising emerging directions that will shape the next generation of scalable, security-aware, and practically deployable hardware fuzzing frameworks.

Read PDF

Similar papers

Preprint Aug 2026

SoK: ARCUS: On the Efficiency and Efficacy of Hardware Fuzzing

This work presents a comprehensive analysis of contemporary hardware fuzzing techniques applied across three major abstraction layers: Instruction Set Architecture (ISA), microarchitecture, and Register-Transfer Level (RTL). Our study examines key factors including input stimulus quality, mutation strategies, feedback...

Alenkruth Krishnan Murali, Raghul Saravanan, D. SaiManojP et al. · 0 citations
Preprint Aug 2026

Lessons from the Hardware Hacking Competitions: Verification Techniques, Findings, and Insights

Hardware hacking competitions have emerged as practical platforms for evaluating security weaknesses in complex System-on-Chip (SoC) designs while promoting security-aware verification and tool development. This paper presents a systematic study of SoC security verification through open-box hardware hacking competition...

Sudipta Paria, Aritra Dasgupta, Raghul Saravanan et al. · 0 citations
Aug 2026

SNIPTEST: Fuzzing Multi-Level Code Slices for Validating Vulnerabilities

SNIPTEST is an execution-based warning triage framework that generates and fuzzes compiled code slices centered around static-analysis warnings that employs a layer-by-layer slicing strategy, incrementally expanding context around the target location to validate potential vulnerabilities with increasing precision.

Aniruddhan Murali, Noble Saji Mathews, Mahmoud Alfadel et al. · 0 citations
Preprint Sep 2026

Robustness-Aware Evaluation and Enhancement of Mutation-Based Fuzzing for Bug Discovery

Splitting, a black-box wrapper that copies a fuzzer's queue state after a bug trigger and continues from that state in multiple branches, directing more effort toward the discovered region, provides a practical way to measure and improve fuzzers.

Zi-Rui Liu, Meng-Fan Xu, Juan Zhai et al. · 0 citations
Preprint Aug 2026

LLM-Assisted Detection and Repair of Hardware Security Vulnerabilities in Verilog Designs

Hardware designs, like software, are susceptible to bugs that can introduce security vulnerabilities and create opportunities for malicious exploitation. Unlike software vulnerabilities, however, hardware flaws become permanently embedded in silicon after fabrication, making them difficult or impossible to patch. Many...

Ethen Santana, Gabriel Gyaase, Hao Zheng · 0 citations

Improving state coverage of greybox fuzzing

AFLWalk is created, a variant of AFLNet, as an attempt to address the challenge of testing stateful protocols by focusing exclusively on message-sequence mutations to steer exploration through protocol state machines, rather than applying byte-level mutations such as bit-flipping.

Philip-Ricardo Schoots, Ir. Erik Poll, Frits W. Vaandrager · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.