DocumentCode :
3307479
Title :
Practical Security Testing using File Fuzzing
Author :
Kim, Hyoungchun ; Choi, Younghan ; Lee, Dohoon ; Lee, DongHoon
Author_Institution :
ETRI, Seoul
Volume :
2
fYear :
2008
fDate :
17-20 Feb. 2008
Firstpage :
1304
Lastpage :
1307
Abstract :
File Fuzzing is the method that inserts fault into general file and monitors the errors during executing the software with fault-inserted file. In this paper, we propose the practical methodology for security testing of software using two file fuzzing approaches. The methodology focuses on binary fields and TAGs(in markup language) of the file. And we show the practical applying to WMF and HTML file.
Keywords :
program testing; security of data; HTML file; TAG; WMF file; fault inserted file; file fuzzing; general file; markup language; practical security testing; software security testing; Data security; HTML; Kernel; Markup languages; Monitoring; Operating systems; Protocols; Software testing; Utility programs; Vehicle crash testing; File Fuzzing; Security Testing; Software Testing;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Advanced Communication Technology, 2008. ICACT 2008. 10th International Conference on
Conference_Location :
Gangwon-Do
ISSN :
1738-9445
Print_ISBN :
978-89-5519-136-3
Type :
conf
DOI :
10.1109/ICACT.2008.4494003
Filename :
4494003
Link To Document :
بازگشت