arrow
返回

Systematic bug finding and fault localization enhanced with input data tracking

delete2013-02-01
delete6
PRE
AI
J
Jared D. DeMott *
R
Richard Enbody
W
William F. Punch
DOI:10.1016/j.cose.2012.09.015delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Fault localization (FL) is the process of debugging erroneous code and directing analysts to the root cause of the bug. With this in mind, we have developed a distributed, end-to-end fuzzing and analysis system that starts with a binary, identifies bugs, and subsequently localizes the bug's root cause. Our system does not require the test subject's source code, nor do we require a test suite. Our work focuses on an important class of bugs, memory corruption errors, which usually have software security implications. Thus, our approach appeals to software attack researchers as well. In addition to our bug hunting and analysis framework, we have enhanced code-coverage based fault localization by incorporating input data tainting and tracking using a light-weight binary instrumentation technique. By capturing code coverage and select input data usage, our new FL algorithm is able to better localize faults, and therefore better assist analysts. We report the application of our approach on large, real-world applications (Firefox and VLC), as well as the classic Siemens benchmark and other test programs. (c) 2012 Elsevier Ltd. All rights reserved.
Keyword:
Testing and debugging
Software security
Fault localization
Distributed fuzzing
Information flow controls

期刊

C
Computers and Security
IF:
5.4
论文数:
4.6K
被引数:
1.4W

机构

M
michigan state university
学者数:
3.6W
论文数: 3.2W
被引数: 44
引用论文

引用论文

Pesticides of natural origin
err2009-01-01
err0
PREAI
errWilliam Charles Evans; Daphne Evans
err分享
err收藏
The New Face of War
err2010-12-01
err22
PREAI
errGreengard, Samuel
err分享
err收藏
err分享
err收藏
err分享
err收藏
学者 查看更多内容