首页|AFLNeTrans:状态间关系感知的网络协议模糊测试

AFLNeTrans:状态间关系感知的网络协议模糊测试

扫码查看
网络协议是现代通信系统中不可缺少的部分,其实现程序的安全性不容忽视.模糊测试已经成为现代漏洞挖掘的主流方式,并在软件安全领域中取得了较大的成功.网络协议模糊测试通常指对网络协议实现程序进行模糊测试,然而传统模糊测试在此类程序的测试上仍存在一些问题.首先,由于网络协议实现程序中不同状态对应不同代码,传统灰盒模糊测试中使用的代码覆盖不能表示网络协议实现程序的内部状态.其次现有灰盒协议模糊器中的状态引导机制依赖于代码覆盖率,不能很好地挖掘网络协议实现程序的状态间关系.对此,文章提出了一种由协议状态间关系和程序代码覆盖率共同引导模糊测试过程从而提升模糊测试效果的模糊器AFLNeTrans,其利用状态间关系作为主要引导机制,引导模糊测试快速探索协议实现程序更多的状态空间,并在Profuzzbench上对其进行了评估实验.实验结果表明,AFLNeTrans在发现状态转移数量上有较明显的提升,并且在代码覆盖率和unique_crash数量上相比现有工具也有提升.
AFLNeTrans:Fuzzing of Protocols with State Relationship Awareness
Network protocols are essential components of modern communication systems,and the security testing of their implementation programs is of great importance.Fuzzing has become the mainstream method for modern vulnerability discovery,and has achieved great success in the field of software security.Traditional fuzzing still has some problems in testing network protocol implementation programs.First,since different states in network protocol implementation programs correspond to different codes,the code coverage used in traditional gray-box fuzzing cannot accurately represent the internal state of network protocol implementation programs.Second,the state guidance mechanism in existing gray-box network protocol fuzzers depends on code coverage,which cannot effectively mine the state relationships in those programs.To address the above problems,this paper proposed AFLNeTrans,a fuzzer that guides the fuzzing process by both protocol state relationships and program code coverage to improve the fuzzing effect.AFLNeTrans used state relationships as the main guidance mechanism to guide fuzzing to quickly explore more state space of network protocol implementation programs.AFLNeTrans was evaluated on a benchmark of well-known protocol fuzzers.Experimental results show that AFLNeTrans has a significant increase in the number of state transitions found,and also has an improvement in code coverage and unique_crash number compared to existing tools.

software testfuzzingnetwork protocolstate guide

洪玄泉、贾鹏、刘嘉勇

展开 >

四川大学网络空间安全学院,成都 610065

软件测试 模糊测试 网络协议 状态引导

国家重点研发计划

2021YFB3101803

2024

信息网络安全
公安部第三研究所 中国计算机学会计算机安全专业委员会

信息网络安全

CSTPCDCHSSCD北大核心
影响因子:0.814
ISSN:1671-1122
年,卷(期):2024.(1)
  • 42