Please use this identifier to cite or link to this item: https://hdl.handle.net/10356/140674
Title: Automating the fuzzing triage process
Authors: Loh, Qi Yuan
Keywords: Engineering::Computer science and engineering
Issue Date: 2020
Publisher: Nanyang Technological University
Project: SCSE19-0321
Abstract: This final year project explores the usage of scripting to improve the efficiency of the fuzzing workflow. Fuzzing is a method of discovering bugs that is quickly gaining momentum within the development community. It has the ability to discover bugs within programs that might otherwise be very hard to get at using traditional methods like source code analysis and program testing using sets of pre-defined inputs. There are a large number of existing tools available to users and development of fuzzing techniques have also taken a huge step forward. Fuzzers have become a flexible tool that can help both developers and pen-testers.While the fuzzer technology has been constantly improving, the workflow of a user during the fuzzing cycle has remained constant throughout. The user runs the fuzzer and then manually debugs each of the output files from the fuzzer to determine the reason behind the erroneous behaviour. This project aims to change the existing workflow by streamlining the work during the triage process. The final tool works in conjunction with AddressSanitizer, the GDB debugger and Valgrind to achieve automated log extraction and crash analysis leading to categorisation of the files.
URI: https://hdl.handle.net/10356/140674
Fulltext Permission: restricted
Fulltext Availability: With Fulltext
Appears in Collections:SCSE Student Reports (FYP/IA/PA/PI)

Files in This Item:
File Description SizeFormat 
SCSE19_0321_qiyuan_v1.pdf
  Restricted Access
2.84 MBAdobe PDFView/Open

Page view(s)

95
Updated on Nov 29, 2020

Download(s)

6
Updated on Nov 29, 2020

Google ScholarTM

Check

Items in DR-NTU are protected by copyright, with all rights reserved, unless otherwise indicated.