Abstract

Random fuzzer is a powerful tool to find vulnerabilities of protocol implementations. One important approach to generate test inputs uses regular expression, and the input may include all possible combinations of fundamental characters. Thus the number of test cases may be tremendous, and furthermore, equivalent strings may usually be generated. In this paper, an effective fuzz input generation method integrating random signal process and regular expression is proposed. Random signal processing technology helps to reduce equivalent inputs, and the regular expression method helps to cover as much special cases in input domain. By enlarging the distance between input cases, the method can reduce equivalent inputs dramatically, while at the same time cover as much special inputs. Protocol specific information element is also considered in the method.

Full Text
Paper version not known

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call

Disclaimer: All third-party content on this website/platform is and will remain the property of their respective owners and is provided on "as is" basis without any warranties, express or implied. Use of third-party content does not indicate any affiliation, sponsorship with or endorsement by them. Any references to third-party content is to identify the corresponding services and shall be considered fair use under The CopyrightLaw.