Conference Proceedings
Model-based whitebox fuzzing for program binaries
VT Pham, M Böhme, A Roychoudhury
Ase 2016 Proceedings of the 31st IEEE ACM International Conference on Automated Software Engineering | IEEE | Published : 2016
Abstract
Many real-world programs take highly structured and complex files as inputs. The automated testing of such programs is non-trivial. If the test does not adhere to a specific file format, the program returns a parser error. For symbolic execution-based whitebox fuzzing the corresponding error handling code becomes a significant time sink. Too much time is spent in the parser exploring too many paths leading to trivial parser errors. Naturally, the time is better spent exploring the functional part of the program where failure with valid input exposes deep and real bugs in the program. In this paper, we suggest to leverage information about the file format and data chunks of existing, valid fi..
View full abstractGrants
Awarded by DSO National Laboratories - Singapore