Black-box testing based on colorful taint analysis
Тип публикации: Journal Article
Дата публикации: 2011-05-30
scimago Q1
wos Q1
white level БС1
SJR: 1.479
CiteScore: 12.6
Impact factor: 7.6
ISSN: 1674733X, 18691919
General Computer Science
Краткое описание
Software vulnerability detection is one of the most important methods for guaranteeing software security. Two main classes of methods can detect vulnerabilities in binary files: white-box testing and black-box testing. The former needs to construct and solve path constraints to detect vulnerabilities. It has two main drawbacks: path exploding and complexity of constraints. The latter often aimlessly exhausts various inputs to test binary files. This paper combines both testing methods to detect vulnerabilities in binary files. By analyzing the input elements that affect check condition corresponding to a certain check point, we can generate one class of inputs that get to the check point to increase fuzzing efficiency. By analyzing the relationship between guard conditions and check condition, the redundant check points are removed. Colorful taint analysis method (CTAM) is proposed to compute guard conditions, which is more efficient than traditional taint analysis method (TTAM). We implemented a prototype and made several experiments on it. The results showed that our method could increase the efficiency of black-box testing.
Найдено
Ничего не найдено, попробуйте изменить настройки фильтра.
Для доступа к списку цитирований публикации необходимо авторизоваться.
Топ-30
Журналы
|
1
|
|
|
IEEE Transactions on Reliability
1 публикация, 14.29%
|
|
|
IEEE Access
1 публикация, 14.29%
|
|
|
Chinese Journal of Electronics
1 публикация, 14.29%
|
|
|
1
|
Издатели
|
1
2
3
4
5
6
|
|
|
Institute of Electrical and Electronics Engineers (IEEE)
6 публикаций, 85.71%
|
|
|
Association for Computing Machinery (ACM)
1 публикация, 14.29%
|
|
|
1
2
3
4
5
6
|
- Мы не учитываем публикации, у которых нет DOI.
- Статистика публикаций обновляется еженедельно.
Вы ученый?
Создайте профиль, чтобы получать персональные рекомендации коллег, конференций и новых статей.
Метрики
7
Всего цитирований:
7
Цитирований c 2025:
0
Цитировать
ГОСТ |
RIS |
BibTex |
MLA
Цитировать
ГОСТ
Скопировать
Chen K. et al. Black-box testing based on colorful taint analysis // Science China Information Sciences. 2011. Vol. 55. No. 1. pp. 171-183.
ГОСТ со всеми авторами (до 50)
Скопировать
Chen K., FENG D., Su P., Zhang Y. Black-box testing based on colorful taint analysis // Science China Information Sciences. 2011. Vol. 55. No. 1. pp. 171-183.
Цитировать
RIS
Скопировать
TY - JOUR
DO - 10.1007/s11432-011-4291-y
UR - https://doi.org/10.1007/s11432-011-4291-y
TI - Black-box testing based on colorful taint analysis
T2 - Science China Information Sciences
AU - Chen, Kai
AU - FENG, DENGGUO
AU - Su, Purui
AU - Zhang, Yingjun
PY - 2011
DA - 2011/05/30
PB - Science in China Press
SP - 171-183
IS - 1
VL - 55
SN - 1674-733X
SN - 1869-1919
ER -
Цитировать
BibTex (до 50 авторов)
Скопировать
@article{2011_Chen,
author = {Kai Chen and DENGGUO FENG and Purui Su and Yingjun Zhang},
title = {Black-box testing based on colorful taint analysis},
journal = {Science China Information Sciences},
year = {2011},
volume = {55},
publisher = {Science in China Press},
month = {may},
url = {https://doi.org/10.1007/s11432-011-4291-y},
number = {1},
pages = {171--183},
doi = {10.1007/s11432-011-4291-y}
}
Цитировать
MLA
Скопировать
Chen, Kai, et al. “Black-box testing based on colorful taint analysis.” Science China Information Sciences, vol. 55, no. 1, May. 2011, pp. 171-183. https://doi.org/10.1007/s11432-011-4291-y.
Ошибка в публикации?