• DocumentCode
    3307479
  • Title

    Practical Security Testing using File Fuzzing

  • Author

    Kim, Hyoungchun ; Choi, Younghan ; Lee, Dohoon ; Lee, DongHoon

  • Author_Institution
    ETRI, Seoul
  • Volume
    2
  • fYear
    2008
  • fDate
    17-20 Feb. 2008
  • Firstpage
    1304
  • Lastpage
    1307
  • Abstract
    File Fuzzing is the method that inserts fault into general file and monitors the errors during executing the software with fault-inserted file. In this paper, we propose the practical methodology for security testing of software using two file fuzzing approaches. The methodology focuses on binary fields and TAGs(in markup language) of the file. And we show the practical applying to WMF and HTML file.
  • Keywords
    program testing; security of data; HTML file; TAG; WMF file; fault inserted file; file fuzzing; general file; markup language; practical security testing; software security testing; Data security; HTML; Kernel; Markup languages; Monitoring; Operating systems; Protocols; Software testing; Utility programs; Vehicle crash testing; File Fuzzing; Security Testing; Software Testing;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Advanced Communication Technology, 2008. ICACT 2008. 10th International Conference on
  • Conference_Location
    Gangwon-Do
  • ISSN
    1738-9445
  • Print_ISBN
    978-89-5519-136-3
  • Type

    conf

  • DOI
    10.1109/ICACT.2008.4494003
  • Filename
    4494003