Practical Security Testing using File Fuzzing

HyoungChun Kim, Younghan Choi, DoHoon Lee, Dong-Hoon Lee · International Conference on Advanced Communication Technology · 2008

File Fuzzing is the method that inserts fault into general file and monitors the errors during executing the software with fault-inserted file. In this paper, we propose the practical methodology for security testing of software using two file fuzzing approaches. The methodology focuses on binary fields and TAGs(in markup language) of the file. And we show the practical applying to WMF and HTML file.

Read the paper · More papers on PaperTik