EWFT:Execution-based Whitebox Fuzzing for Executables
Yin Wang · Dianzi xuebao · 2014
The dynamic testing for automaticlly identifing security vulnerabilities in binary executables has received increasingly interest in recent years.In this paper,w e present a new automated w hitebox fuzzing tool EWFT( Executionbased Whitebox Fuzzing Tool),w hich implements dynamic symbolic execution and taint tracing techniques during program execution.Our contributions are:1) w e propose a ROBDD( Reduced Ordered Binary Decision Diagram)-based approach to analyse execution process,2) w e introduce a new path w eight analysis algorithm( PWA) for searching path space and automating test data generation,and 3) w e build a prototype tool that automatically finds softw are vulnerabilities.Results of our experiments show that execution-based w hitebox fuzzing is pow erful to identify variety of security vulnerabilities in real applications.Compared to the related w ork in the research area,it explored deeper program paths on the average,and achieved higher structural coverage.