On the reliability of coverage-based fuzzer benchmarking
Marcel Böhme, László Szekeres, Jonathan Metzman · Proceedings of the 44th International Conference on Software Engineering · 2022
Given a program where none of our fuzzers finds any bugs, how do we know which fuzzer is better? In practice, we often look to code coverage as a proxy measure of fuzzer effectiveness and consider the fuzzer which achieves more coverage as the better one.