Futag: Automated fuzz target generator for testing software libraries | IEEE Conference Publication | IEEE Xplore

Futag: Automated fuzz target generator for testing software libraries


Abstract:

Recently, Fuzzing is one of the most successful techniques to expose bugs in software. For testing large programs or large codebase with many features and entry-points, t...Show More

Abstract:

Recently, Fuzzing is one of the most successful techniques to expose bugs in software. For testing large programs or large codebase with many features and entry-points, the creation of fuzz-targets remains a big challenge. In this paper, we introduce Futag – an automated fuzz target generator for testing software libraries. This approach uses static analysis to collect information about source code: data type definitions, dependencies of types, definitions of functions, etc. Futag has found many vulnerabilities in latest version of popular libraries such as: libopenssl, libpng, libjson-c, liblxml2.
Date of Conference: 24-25 September 2021
Date Added to IEEE Xplore: 31 January 2022
ISBN Information:
Conference Location: Nizhny Novgorod, Russian Federation

Contact IEEE to Subscribe

References

References is not available for this document.