arrow
Return

HyperGo: Probability-based directed hybrid fuzzing

delete2024-07-01
delete1
delete
OA
AI
P
Peihong Lin
P
Pengfei Wang *
X
Xu Zhou
W
Wei Xie
K
Kai Lu
G
Gen Zhang
DOI:10.1016/j.cose.2024.103851delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
Directed grey -box fuzzing (DGF) is a target -guided fuzzing intended for testing specific targets (e.g., the potential buggy code). Despite numerous techniques proposed to enhance directedness, the existing DGF techniques still face challenges, such as taking into account the difficulty of reaching different basic blocks when designing the fitness metric, and promoting the effectiveness of symbolic execution (SE) when solving the complex constraints in the path to the target. In this paper, we propose a directed hybrid fuzzer called HyperGo. To address the challenges, we introduce the concept of path probability and combine the probability with distance to form an adaptive fitness metric called probability -based distance . By combining the two factors, probability -based distance can adaptively guide DGF toward paths that are closer to the target and have more easy -to -satisfy path constraints. Then, we put forward an Optimized Symbolic Execution Complementary (OSEC) scheme to combine DGF and SE in a complementary manner. The OSEC would prune the unreachable branches and unsolvable branches, and prioritize symbolic execution of the seeds whose paths are closer to the target and have more branches that are difficult to be covered by DGF. We evaluated HyperGo on 2 benchmarks consisting of 25 programs with a total of 120 target sites. The experimental results show that HyperGo achieves 37.75x, 29.11x, 23.34x, 95.61x and 143.22x speedup compared to AFLGo, AFLGoSy, BEACON, WindRanger, and ParmeSan, respectively in reaching target sites, and 3.44x, 3.63x, 4.10x, 3.26x, and 3.00x speedup in exposing known vulnerabilities. Moreover, HyperGo discovered 10 undisclosed vulnerabilities from 5 real -world programs.
Keywords:
Directed greybox fuzzing
Symbolic execution
Hybrid fuzzing
Software security
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

C
Computers and Security
IF:
5.4
Papers:
4.6K
Citations:
1.4W

Organization

N
national university of defense technology - china
Scholars:
1.8W
Papers: 1.4W
Citations: 9