• • 上一篇    下一篇

Fuzzing 测试技术综述

史记%曾昭龙%杨从保%李培岳   

  • 基金资助:
    公安部科技强警基础工作专项[2012GABJC019]、中国人民公安大学基本科研业务费项目(2013LGX01)

The Summary of Fuzzing Testing Technology

SHI Ji%ZENG Zhao-long%YANG Cong-bao%LI Pei-yue   

  • About author:中国人民公安大学网络安全保卫学院,北京,100038

摘要: Fuzzing 测试技术能够自动识别出二进制文件中的安全问题,这是一个新兴值得研究的领域。Fuzzing 技术从早期的手工方式逐渐发展为现在的自动化甚至智能化方式。文章对现有的 Fuzzing 测试方法进行了比较和研究,总结目前 Fuzzing 测试框架的特点,并预测了其未来发展方向。

Abstract: Fuzzing is a method that can identify security issues in binary files automatically. This is a new but promising field. Fuzzing has developed from manual ways to automatic and intelligent ways. In this paper we made comparisons between different fuzzing methods and summarized the characteristics of existing Fuzzing frameworks. Finally, we gave the future of fuzzing.