1
Return

From coverage to causes: Data-centric fuzzing for Javascript engines

delete2026-06-10
delete0
PRE
AI
K
Kishan Kumar Ganguly *
T
Tim Menzies
DOI:10.1016/j.infsof.2026.108211delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Exhaustive fuzzing of modern JavaScript engines is infeasible due to the vast number of program states and execution paths. Coverage-guided fuzzers rely on coverage as a proxy for progress, but many vulnerability-triggering inputs that do not increase coverage are discarded. Since fuzzing is expensive and crashes are rare in mature engines, relying on brute-force exploration wastes substantial effort. Existing heuristics proposed to mitigate this require expert effort, are brittle, and hard to adapt.

Journal

Information and Software Technology cover
Information and Software Technology
IF:
4.3
Papers:
3.7K
Citations:
7.7K

Organization

No organization information available
Cited Papers

Cited Papers

Citing Papers

Citing Papers