DocumentCode
3307479
Title
Practical Security Testing using File Fuzzing
Author
Kim, Hyoungchun ; Choi, Younghan ; Lee, Dohoon ; Lee, DongHoon
Author_Institution
ETRI, Seoul
Volume
2
fYear
2008
fDate
17-20 Feb. 2008
Firstpage
1304
Lastpage
1307
Abstract
File Fuzzing is the method that inserts fault into general file and monitors the errors during executing the software with fault-inserted file. In this paper, we propose the practical methodology for security testing of software using two file fuzzing approaches. The methodology focuses on binary fields and TAGs(in markup language) of the file. And we show the practical applying to WMF and HTML file.
Keywords
program testing; security of data; HTML file; TAG; WMF file; fault inserted file; file fuzzing; general file; markup language; practical security testing; software security testing; Data security; HTML; Kernel; Markup languages; Monitoring; Operating systems; Protocols; Software testing; Utility programs; Vehicle crash testing; File Fuzzing; Security Testing; Software Testing;
fLanguage
English
Publisher
ieee
Conference_Titel
Advanced Communication Technology, 2008. ICACT 2008. 10th International Conference on
Conference_Location
Gangwon-Do
ISSN
1738-9445
Print_ISBN
978-89-5519-136-3
Type
conf
DOI
10.1109/ICACT.2008.4494003
Filename
4494003
Link To Document