Matches in SemOpenAlex for { <https://semopenalex.org/work/W4385080325> ?p ?o ?g. }
- W4385080325 abstract "Directed grey-box fuzzers specialize in testing specific target code. They have been applied to many security applications such as reproducing known crashes and detecting vulnerabilities caused by incomplete patches. However, existing directed fuzzers favor the inputs discovering new code regardless whether the newly uncovered code is relevant to the target code or not. As a result, the fuzzers would extensively explore irrelevant code and suffer from low efficiency.In this paper, we distinguish relevant code in the target program from the irrelevant one that does not help trigger the vulnerabilities in target code. We present SelectFuzz, a new directed fuzzer that selectively explores relevant program paths for efficient crash reproduction and vulnerability detection. It identifies two types of relevant code—path-divergent code and data-dependent code, that respectively captures the control-and data- dependency with the target code. It then selectively instruments and explores only the relevant code blocks. We also propose a new distance metric that accurately measures the reaching probability of different program paths and inputs.We evaluated SelectFuzz with real-world vulnerabilities in sets of diverse programs. SelectFuzz significantly outperformed a baseline directed fuzzer by up to 46.31×, and performed the best in the Google Fuzzer Test Suite. Our experiments also demonstrated that SelectFuzz and the existing techniques such as path pruning are complementary. Finally, with SelectFuzz, we detected 14 previously unknown vulnerabilities—including 6 new CVE IDs—in well tested real-world software. Our report has led to the fix of 11 vulnerabilities." @default.
- W4385080325 created "2023-07-23" @default.
- W4385080325 creator A5015703927 @default.
- W4385080325 creator A5079631141 @default.
- W4385080325 creator A5082091969 @default.
- W4385080325 date "2023-05-01" @default.
- W4385080325 modified "2023-10-16" @default.
- W4385080325 title "SelectFuzz: Efficient Directed Fuzzing with Selective Path Exploration" @default.
- W4385080325 cites W1526710119 @default.
- W4385080325 cites W2150169293 @default.
- W4385080325 cites W2511015845 @default.
- W4385080325 cites W2574017551 @default.
- W4385080325 cites W2766898821 @default.
- W4385080325 cites W2794670092 @default.
- W4385080325 cites W2891235722 @default.
- W4385080325 cites W2898382837 @default.
- W4385080325 cites W2963764936 @default.
- W4385080325 cites W2963846926 @default.
- W4385080325 cites W2964097210 @default.
- W4385080325 cites W2969597118 @default.
- W4385080325 cites W3007106047 @default.
- W4385080325 cites W3007413911 @default.
- W4385080325 cites W3008477014 @default.
- W4385080325 cites W3011427369 @default.
- W4385080325 cites W3089408602 @default.
- W4385080325 cites W3196234817 @default.
- W4385080325 cites W3213337076 @default.
- W4385080325 cites W3214439093 @default.
- W4385080325 cites W4200578649 @default.
- W4385080325 cites W4226255934 @default.
- W4385080325 cites W4281388078 @default.
- W4385080325 cites W4284698041 @default.
- W4385080325 cites W4284708843 @default.
- W4385080325 cites W4288057755 @default.
- W4385080325 cites W4288057756 @default.
- W4385080325 cites W4288057792 @default.
- W4385080325 cites W4288057797 @default.
- W4385080325 doi "https://doi.org/10.1109/sp46215.2023.10179296" @default.
- W4385080325 hasPublicationYear "2023" @default.
- W4385080325 type Work @default.
- W4385080325 citedByCount "0" @default.
- W4385080325 crossrefType "proceedings-article" @default.
- W4385080325 hasAuthorship W4385080325A5015703927 @default.
- W4385080325 hasAuthorship W4385080325A5079631141 @default.
- W4385080325 hasAuthorship W4385080325A5082091969 @default.
- W4385080325 hasConcept C1009929 @default.
- W4385080325 hasConcept C108010975 @default.
- W4385080325 hasConcept C111065885 @default.
- W4385080325 hasConcept C119857082 @default.
- W4385080325 hasConcept C162324750 @default.
- W4385080325 hasConcept C176217482 @default.
- W4385080325 hasConcept C177264268 @default.
- W4385080325 hasConcept C199360897 @default.
- W4385080325 hasConcept C21547014 @default.
- W4385080325 hasConcept C22680326 @default.
- W4385080325 hasConcept C2776760102 @default.
- W4385080325 hasConcept C2777735758 @default.
- W4385080325 hasConcept C2777904410 @default.
- W4385080325 hasConcept C29983905 @default.
- W4385080325 hasConcept C38652104 @default.
- W4385080325 hasConcept C41008148 @default.
- W4385080325 hasConcept C43126263 @default.
- W4385080325 hasConcept C51929080 @default.
- W4385080325 hasConcept C527648132 @default.
- W4385080325 hasConcept C53942775 @default.
- W4385080325 hasConcept C62913178 @default.
- W4385080325 hasConcept C63116202 @default.
- W4385080325 hasConcept C6557445 @default.
- W4385080325 hasConcept C86803240 @default.
- W4385080325 hasConcept C95713431 @default.
- W4385080325 hasConceptScore W4385080325C1009929 @default.
- W4385080325 hasConceptScore W4385080325C108010975 @default.
- W4385080325 hasConceptScore W4385080325C111065885 @default.
- W4385080325 hasConceptScore W4385080325C119857082 @default.
- W4385080325 hasConceptScore W4385080325C162324750 @default.
- W4385080325 hasConceptScore W4385080325C176217482 @default.
- W4385080325 hasConceptScore W4385080325C177264268 @default.
- W4385080325 hasConceptScore W4385080325C199360897 @default.
- W4385080325 hasConceptScore W4385080325C21547014 @default.
- W4385080325 hasConceptScore W4385080325C22680326 @default.
- W4385080325 hasConceptScore W4385080325C2776760102 @default.
- W4385080325 hasConceptScore W4385080325C2777735758 @default.
- W4385080325 hasConceptScore W4385080325C2777904410 @default.
- W4385080325 hasConceptScore W4385080325C29983905 @default.
- W4385080325 hasConceptScore W4385080325C38652104 @default.
- W4385080325 hasConceptScore W4385080325C41008148 @default.
- W4385080325 hasConceptScore W4385080325C43126263 @default.
- W4385080325 hasConceptScore W4385080325C51929080 @default.
- W4385080325 hasConceptScore W4385080325C527648132 @default.
- W4385080325 hasConceptScore W4385080325C53942775 @default.
- W4385080325 hasConceptScore W4385080325C62913178 @default.
- W4385080325 hasConceptScore W4385080325C63116202 @default.
- W4385080325 hasConceptScore W4385080325C6557445 @default.
- W4385080325 hasConceptScore W4385080325C86803240 @default.
- W4385080325 hasConceptScore W4385080325C95713431 @default.
- W4385080325 hasLocation W43850803251 @default.
- W4385080325 hasOpenAccess W4385080325 @default.
- W4385080325 hasPrimaryLocation W43850803251 @default.
- W4385080325 hasRelatedWork W197614256 @default.
- W4385080325 hasRelatedWork W2024088899 @default.