首页    期刊浏览 2024年07月04日 星期四
登录注册

文章基本信息

  • 标题:A Review on Grammar-Based Fuzzing Techniques
  • 本地全文:下载
  • 作者:Mr. Hamad Ali Al Salem ; Dr. Jia Song
  • 期刊名称:International Journal of Computer Science and Security (IJCSS)
  • 电子版ISSN:1985-1553
  • 出版年度:2019
  • 卷号:13
  • 期号:3
  • 页码:114-123
  • 出版社:Computer Science Journals
  • 摘要:Fuzzing has become the most interesting software testing technique because it can find different types of bugs and vulnerabilities in many target programs. Grammar-based fuzzing tools have been shown effectiveness in finding bugs and generating good fuzzing files. Fuzzing techniques are usually guided by different methods to improve their effectiveness. However, they have limitation as well. In this paper, we present an overview of grammar-based fuzzing tools and techniques that are used to guide them which include mutation, machine learning, and evolutionary computing. Few studies are conducted on this approach and show the effectiveness and quality in exploring new vulnerabilities in a program. Here we summarize the studied fuzzing tools and explain each one method, input format, strengths and limitations. Some experiments are conducted on two of the fuzzing tools and comparing between them based on the quality of generated fuzzing files.
  • 关键词:Fuzzing; Grammar-based; Generation; Mutation; Techniques; File Input Quality.
国家哲学社会科学文献中心版权所有