A survey of protocol fuzzing

X Zhang, C Zhang, X Li, Z Du, B Mao, Y Li… - ACM Computing …, 2024 - dl.acm.org
Communication protocols form the bedrock of our interconnected world, yet vulnerabilities
within their implementations pose significant security threats. Recent developments have …

{BrakTooth}: Causing havoc on bluetooth link manager via directed fuzzing

ME Garbelini, V Bedi, S Chattopadhyay, S Sun… - 31st USENIX Security …, 2022 - usenix.org
In this paper we propose, design and evaluate a systematic directed fuzzing framework to
automatically discover implementation bugs in arbitrary Bluetooth Classic (BT) devices. The …

Towards automated fuzzing of 4g/5g protocol implementations over the air

ME Garbelini, Z Shang… - … 2022-2022 IEEE …, 2022 - ieeexplore.ieee.org
Recent rise in the mobile network communication vulnerabilities highlights the need for
systematic security testing frameworks for communication protocols. In this paper, we …

U-fuzz: Stateful fuzzing of iot protocols on cots devices

Z Shang, ME Garbelini… - 2024 IEEE Conference …, 2024 - ieeexplore.ieee.org
Internet-of-Things (IoT) devices have become widely popular and are being increasingly
utilized in both home and industrial environments. Such devices use a variety of different …

Software Vulnerability Fuzz Testing: A Mutation-Selection Optimization Systematic Review

FY Assiri, AO Aljahdali - Engineering, Technology & Applied Science …, 2024 - etasr.com
As software vulnerabilities can cause cybersecurity threats and have severe consequences,
it is necessary to develop effective techniques to discover such vulnerabilities. Fuzzing is …

Owfuzz: Discovering Wi-Fi Flaws in Modern Devices through Over-The-Air Fuzzing

H Cao, L Huang, S Hu, S Shi, Y Liu - … of the 16th ACM Conference on …, 2023 - dl.acm.org
Fuzzing is a practical approach to discovering flaws in the design and implementation of Wi-
Fi protocols. However, existing Wi-Fi fuzzers are either vendor-or ecosystem-specific …

Industry Practice of Directed Kernel Fuzzing for Open-source Linux Distribution

H Shi, S Chen, R Wang, Y Chen, W Zhang… - Proceedings of the 39th …, 2024 - dl.acm.org
Directed grey-box fuzzing is a widely used automatic testing technique that has helped
developers test specific code space in the target program. Although many directed fuzzers …

[PDF][PDF] Enumerative Data Types with Constraints

AT Walter, D Greve, P Manolios - 2022 Formal Methods in …, 2022 - library.oapen.org
Many verification and validation activities involve reasoning about constraints over complex,
hierarchical data types. For example, distributed protocols are often defined using state …

The progress, challenges, and perspectives of directed greybox fuzzing

P Wang, X Zhou, T Yue, P Lin, Y Liu… - … Testing, Verification and …, 2024 - Wiley Online Library
Greybox fuzzing is a scalable and practical approach for software testing. Most greybox
fuzzing tools are coverage‐guided as reaching high code coverage is more likely to find …

U-Fuzz: A Tool Prototype for Stateful Fuzzing of IoT Protocols on COTS Devices

Z Shang, ME Garbelini… - 2024 IEEE Conference …, 2024 - ieeexplore.ieee.org
Internet-of-Things (IoT) devices have become widely popular and are being increasingly
utilized in both home and industrial environments. Such devices use a variety of protocols …