Stateful greybox fuzzing

J Ba, M Böhme, Z Mirzamomen… - 31st USENIX Security …, 2022 - usenix.org
… We implemented this algorithm into LIBFUZZER and call our fuzzer SGFUZZ (Stateful
Greybox Fuzzer). Starting with an initial seed corpus T and until a timeout is reached or the user …

StateAFL: Greybox fuzzing for stateful network servers

R Natella - Empirical Software Engineering, 2022 - Springer
… The aim of this work is to develop a greybox fuzzer (StateAFL) for network servers that only
… to what the AFL fuzzer achieved for stateless programs. The proposed fuzzer instruments the …

SNPSFuzzer: A fast greybox fuzzer for stateful network protocols using snapshots

J Li, S Li, G Sun, T Chen, H Yu - IEEE Transactions on …, 2022 - ieeexplore.ieee.org
… blackbox fuzzing (SBF), such as Peach [5] and BooFuzz [6]. By … stateful coveragebased
greybox fuzzing (SCGF) to solve the above problems. AFLNET [7] was the first greybox fuzzer for …

AFLNet: a greybox fuzzer for network protocols

VT Pham, M Böhme… - 2020 IEEE 13th …, 2020 - ieeexplore.ieee.org
… inputs, a greybox fuzzer can be steered, … greybox fuzzing aware of the input structure [7],
[16]–[18]. In contrast, we suggest to make greybox fuzzing aware of the state space of a stateful

Model‐Based GreyBox Fuzzing of Network Protocols

Y Pan, W Lin, L Jiao, Y Zhu - Security and Communication …, 2022 - Wiley Online Library
… This paper proposes a model-based grey-box fuzzing … (MAT) framework and grey-box
fuzzing guided by the learned model … for stateful protocol fuzzing, termed model-based grey-box

SGPFuzzer: A state-driven smart graybox protocol fuzzer for network protocol implementations

Y Yu, Z Chen, S Gan, X Wang - IEEE Access, 2020 - ieeexplore.ieee.org
… protocol fuzzers to highlight the challenges when addressing stateful network protocol …
a state-driven smart graybox protocol fuzzer called SGPFuzzer that can fully test stateful network …

[PDF][PDF] Sok: The progress, challenges, and perspectives of directed greybox fuzzing

P Wang, X Zhou, K Lu, T Yue, Y Liu - arXiv preprint arXiv …, 2020 - szu-se.github.io
… knowledge of coverage-guided greybox fuzzing and directed greybox fuzzing. Section 3
evaluates the collected state-of-the-art directed greybox fuzzers based on the extracted metrics …

Linear-time temporal logic guided greybox fuzzing

R Meng, Z Dong, J Li, I Beschastnikh… - Proceedings of the 44th …, 2022 - dl.acm.org
… progress in fuzzing, we build a greybox fuzzing framework to … stateful software systems;
however, it does not achieve verification. Our work substantially extends directed greybox fuzzing

DSFuzz: deep state of stateful protocol fuzzing

Z Han, X Xu - 2024 5th International Conference on Computer …, 2024 - ieeexplore.ieee.org
stateful black-box fuzz testing techniques. By constructing a protocol state machine model,
stateful black-box fuzz … -based grey box stateful protocol fuzzer in network protocol fuzz testing…

Firmhunter: State-aware and introspection-driven grey-box fuzzing towards iot firmware

Q Yin, X Zhou, H Zhang - Applied Sciences, 2021 - mdpi.com
… We have proposed an automated stateful and introspection-driven grey-box fuzzer towards
Linux-based firmware images. It utilizes the message-state queue to satisfy authentication, …