Diffuzz: differential fuzzing for side-channel analysis

S Nilizadeh, Y Noller… - 2019 IEEE/ACM 41st …, 2019 - ieeexplore.ieee.org
… APPROACH Figure 1 shows the overview of our differential fuzzing approach. To start the
analysis, the user needs to provide initial seed files that exercise the program under test (cf. …

Jvm fuzzing for jit-induced side-channel detection

T Brennan, S Saha, T Bultan - Proceedings of the ACM/IEEE 42nd …, 2020 - dl.acm.org
… During JVM Fuzzing phase we evaluate each priming input iπ ∈ Iπ to determine its … tool
for the detection of side channels. DiffFuzz catches an overflow bug resulting in a timing side

Differential program analysis with fuzzing and symbolic execution

Y Noller - Proceedings of the 33rd ACM/IEEE International …, 2018 - dl.acm.org
sidechannel analysis was started developing a fuzzing approach for the identification of
side-channel … Additional work is required to make usage of the full potential of fuzzing and …

HyDiff: Hybrid differential software analysis

Y Noller, CS Păsăreanu, M Böhme, Y Sun… - Proceedings of the …, 2020 - dl.acm.org
… Detecting regression bugs in software evolution, analyzing sidechannels in programs and
… Our core contribution in differential fuzzing is the input assessment, ie, the selection of the …

Side-channel aware fuzzing

P Sperl, K Böttinger - Computer Security–ESORICS 2019: 24th European …, 2019 - Springer
… for fuzzing cannot be acquired. In this paper we present and evaluate a new approach to
extract feedback for fuzzing … that the power side-channel carries information relevant for fuzzing. …

Differential Testing of Cryptographic Libraries with Hybrid Fuzzing

H Jin, D An, T Kwon - … Conference on Information Security and Cryptology, 2022 - Springer
… implementation discrepancies through differential testing while the back-… of differential
fuzzing and single target fuzzing. We observe there is a substantial overhead in differential fuzzing

SpecDoctor: Differential fuzz testing to find transient execution vulnerabilities

J Hur, S Song, S Kim, B Lee - Proceedings of the 2022 ACM SIGSAC …, 2022 - dl.acm.org
… CPU should not have a side-channel in the branch predictor. … side channel using a previously
unknown gadget. We note that the instruction patterns for the port contention side channel

[PDF][PDF] Hybrid differential software testing

Y Noller - Ernst Denert Award for Software Engineering 2020 …, 2022 - library.oapen.org
… detect sidechannel vulnerabilities. Furthermore, the comparison between differential fuzzing
… static analysis tools for the detection of side-channel vulnerabilities. Additionally, HYDIFF’s …

[PDF][PDF] Timing Side-Channel Mitigation via Automated Program Repair

H RUAN, Y NOLLER, S TIZPAZ-NIARI… - 2024 - abhikrc.com
Side-channel vulnerability detection has gained prominence … for side-channel detection
range from fuzz testing to program analysis and program composition. Existing side-channel

[PDF][PDF] Fuzzing Using Side Channel Information

S Popa, E Poll, S Picek, C Daniele, SB Andarzian - cristiandaniele.com
… We will call the fuzzer which uses sidechannel vulnerabilities during the fuzzing process
SCFuzzLibAFL. … Their main focus is to use differential fuzzing for finding whether exploitable side