Technical Report: Stateful Fuzzer - INRIA - Institut National de Recherche en Informatique et en Automatique Accéder directement au contenu
Rapport (Rapport De Recherche) Année : 2007

Technical Report: Stateful Fuzzer

Radu State
  • Fonction : Auteur
  • PersonId : 755670
  • IdRef : 059893591

Résumé

With the recent evolution in the VoIP market, where more and more devices and services are being pushed on a very promising market, assuring their security becomes crucial. Among the most dangerous threats to VoIP, failures and bugs in the software implementation will still rank high on the list of vulnerabilities. In this paper we address the issue of detecting such vulnerabilities using a stateful fuzzer. We describe an automated attack approach capable to self-improve and to track the state context of a target device. We implemented our approach and were able to discover vulnerabilities in market leading and well known equipments and software.
Fichier principal
Vignette du fichier
Stateful_Fuzzer_Report.pdf (369.97 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

inria-00141133 , version 1 (11-04-2007)

Identifiants

  • HAL Id : inria-00141133 , version 1

Citer

Humberto Abdelnur, Radu State, Olivier Festor. Technical Report: Stateful Fuzzer. [Research Report] 2007, pp.10. ⟨inria-00141133⟩
121 Consultations
488 Téléchargements

Partager

Gmail Facebook X LinkedIn More