arrow
返回

Fuzzability Testing Framework for Incomplete Firmware Binary

delete2023-01-01
delete1
delete
OA
AI
J
Jiwon Jang
G
Gyeongjin Son
H
Hyeonsu Lee
H
Heesun Yun
D
Deokjin Kim
S
Sangwook Lee
S
Seongmin Kim
D
Daehee Jang *
DOI:10.1109/ACCESS.2023.3297888delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Fuzzing is a practical approach for finding bugs in various software. So far, a number of fuzzers have been introduced based on new ideas towards enhancing the efficiency in terms of increasing code coverage or execution speed. The majority of such work predicates under the assumption that they have sound executable binary or source code to transform the target program as a whole. However, in legacy systems, source codes are often unavailable and even worse, some binaries do not provide a sound executable environment (e.g., partially recovered firmware). In this paper, we provide FT-Framework: fuzzability testing framework based on forced execution for binaries such as firmware chunks recovered in abnormal way so that they are hard to execute/analyze from intended booting phase. The essence of our work is to automatically classify functions inside a binary which we can apply coverage-guided fuzzing via forced execution. We evaluate FT-Framework using PX4 and ArduPilot firmwares which is based on 32-bit ARM architecture and demonstrate the efficacy of this approach and limitations.
Keyword:
Fuzzability
firmware binary
coverage-guided fuzzing
fuzzable function
binary fragment
emulation based fuzzing

期刊

IEEE Access 封面图
IEEE Access
IF:
3.6
论文数:
9.8W
被引数:
29.4W

机构

K
kyung hee university
学者数:
2.3W
论文数: 2.2W
被引数: 234