Matches in SemOpenAlex for { <https://semopenalex.org/work/W4385229707> ?p ?o ?g. }
Showing items 1 to 69 of
69
with 100 items per page.
- W4385229707 abstract "Softwarization and virtualization in 5G and beyond necessitate thorough testing to ensure the security of critical infrastructure and networks, requiring the identification of vulnerabilities and unintended emergent behaviors from protocol designs to their software stack implementation. To provide an efficient and comprehensive solution, we propose a novel and first-of-its-kind approach that connects the strengths and coverage of formal and fuzzing methods to efficiently detect vulnerabilities across protocol logic and implementation stacks in a hierarchical manner. We design and implement formal verification to detect attack traces in critical protocols, which are used to guide subsequent fuzz testing and incorporate feedback from fuzz testing to broaden the scope of formal verification. This innovative approach significantly improves efficiency and enables the auto-discovery of vulnerabilities and unintended emergent behaviors from the 3GPP protocols to software stacks. Following this approach, we discover one identifier leakage model, one DoS attack model, and two eavesdrop attack models due to the absence of rudimentary MITM protection within the protocol, despite the existence of a Transport Layer Security (TLS) solution to this issue for over a decade. More remarkably, guided by the identified formal analysis and attack models, we exploit 61 vulnerabilities using fuzz testing demonstrated on srsRAN platforms. These identified vulnerabilities contribute to fortifying protocol-level assumptions and refining the search space. Compared to state-of-the-art fuzz testing, our united formal and fuzzing methodology enables auto-assurance by systematically discovering vulnerabilities. It significantly reduces computational complexity, transforming the non-practical exponential growth in computational cost into linear growth." @default.
- W4385229707 created "2023-07-26" @default.
- W4385229707 creator A5002804082 @default.
- W4385229707 creator A5027373671 @default.
- W4385229707 creator A5092467289 @default.
- W4385229707 date "2023-07-20" @default.
- W4385229707 modified "2023-09-25" @default.
- W4385229707 title "Formal-Guided Fuzz Testing: Targeting Security Assurance from Specification to Implementation for 5G and Beyond" @default.
- W4385229707 doi "https://doi.org/10.48550/arxiv.2307.11247" @default.
- W4385229707 hasPublicationYear "2023" @default.
- W4385229707 type Work @default.
- W4385229707 citedByCount "0" @default.
- W4385229707 crossrefType "posted-content" @default.
- W4385229707 hasAuthorship W4385229707A5002804082 @default.
- W4385229707 hasAuthorship W4385229707A5027373671 @default.
- W4385229707 hasAuthorship W4385229707A5092467289 @default.
- W4385229707 hasBestOaLocation W43852297071 @default.
- W4385229707 hasConcept C111065885 @default.
- W4385229707 hasConcept C111498074 @default.
- W4385229707 hasConcept C115903868 @default.
- W4385229707 hasConcept C120314980 @default.
- W4385229707 hasConcept C142724271 @default.
- W4385229707 hasConcept C165696696 @default.
- W4385229707 hasConcept C199360897 @default.
- W4385229707 hasConcept C204787440 @default.
- W4385229707 hasConcept C2777904410 @default.
- W4385229707 hasConcept C2780385302 @default.
- W4385229707 hasConcept C29983905 @default.
- W4385229707 hasConcept C38652104 @default.
- W4385229707 hasConcept C41008148 @default.
- W4385229707 hasConcept C527648132 @default.
- W4385229707 hasConcept C62913178 @default.
- W4385229707 hasConcept C71924100 @default.
- W4385229707 hasConcept C75606506 @default.
- W4385229707 hasConcept C80444323 @default.
- W4385229707 hasConceptScore W4385229707C111065885 @default.
- W4385229707 hasConceptScore W4385229707C111498074 @default.
- W4385229707 hasConceptScore W4385229707C115903868 @default.
- W4385229707 hasConceptScore W4385229707C120314980 @default.
- W4385229707 hasConceptScore W4385229707C142724271 @default.
- W4385229707 hasConceptScore W4385229707C165696696 @default.
- W4385229707 hasConceptScore W4385229707C199360897 @default.
- W4385229707 hasConceptScore W4385229707C204787440 @default.
- W4385229707 hasConceptScore W4385229707C2777904410 @default.
- W4385229707 hasConceptScore W4385229707C2780385302 @default.
- W4385229707 hasConceptScore W4385229707C29983905 @default.
- W4385229707 hasConceptScore W4385229707C38652104 @default.
- W4385229707 hasConceptScore W4385229707C41008148 @default.
- W4385229707 hasConceptScore W4385229707C527648132 @default.
- W4385229707 hasConceptScore W4385229707C62913178 @default.
- W4385229707 hasConceptScore W4385229707C71924100 @default.
- W4385229707 hasConceptScore W4385229707C75606506 @default.
- W4385229707 hasConceptScore W4385229707C80444323 @default.
- W4385229707 hasLocation W43852297071 @default.
- W4385229707 hasOpenAccess W4385229707 @default.
- W4385229707 hasPrimaryLocation W43852297071 @default.
- W4385229707 hasRelatedWork W1502951647 @default.
- W4385229707 hasRelatedWork W1971124455 @default.
- W4385229707 hasRelatedWork W1988092562 @default.
- W4385229707 hasRelatedWork W2123016006 @default.
- W4385229707 hasRelatedWork W2963478035 @default.
- W4385229707 hasRelatedWork W3023846186 @default.
- W4385229707 hasRelatedWork W3091728393 @default.
- W4385229707 hasRelatedWork W4226059543 @default.
- W4385229707 hasRelatedWork W4284888217 @default.
- W4385229707 hasRelatedWork W4382139733 @default.
- W4385229707 isParatext "false" @default.
- W4385229707 isRetracted "false" @default.
- W4385229707 workType "article" @default.