首页> 外文期刊>International journal of ad hoc and ubiquitous computing >CG-Fuzzing: a comprehensive fuzzy algorithm for ZigBee
【24h】

CG-Fuzzing: a comprehensive fuzzy algorithm for ZigBee

机译:CG-Fuzzing:ZigBee的综合模糊算法

获取原文
获取原文并翻译 | 示例
       

摘要

ZigBee defines several security services on the MAC layer, including sequential freshness, frame integrity, data encryption and access control. Unfortunately, there are still security vulnerabilities that could result in network meltdown. Therefore, it is necessary to detect these defects by using a fuzzing test. However, fuzzing tests have usually been inefficient because test cases are either too numerous or invalid. In this paper, a novel comprehensive fuzzing test algorithm, CG-Fuzzing (comprehensive genetic-based-fuzzing) is proposed. The CG-Fuzzing algorithm contains three parts: structure-based, boundary-based and genetic algorithms. This paper establishes an evolutionary model that helps achieve high rates of passing filtering rules and vulnerability triggering. Compared with the traditional fuzzing methods, the number of test cases is reduced and they are more efficient. Experimental results prove that the synthesised performance of CG-Fuzzing is outstanding. The fuzzing test with the algorithm takes only 4 min to exploit a previously known vulnerability of ZigBee.
机译:ZigBee在MAC层上定义了几种安全服务,包括顺序更新,帧完整性,数据加密和访问控制。不幸的是,仍然存在可能导致网络崩溃的安全漏洞。因此,有必要通过模糊测试来检测这些缺陷。但是,模糊测试通常效率不高,因为测试用例太多或无效。本文提出了一种新颖的综合模糊测试算法CG-Fuzzing(基于遗传的综合模糊测试)。 CG模糊算法包含三个部分:基于结构的算法,基于边界的算法和遗传算法。本文建立了一个进化模型,该模型有助于实现较高的过滤规则通过率和漏洞触发率。与传统的模糊测试方法相比,测试案例的数量减少了,效率更高。实验结果证明,CG-Fuzzing的综合性能优异。利用该算法进行的模糊测试仅需4分钟即可利用以前已知的ZigBee漏洞。

著录项

  • 来源
  • 作者单位

    Beijing Univ Posts & Telecommun, Sch Comp Sci & Technol, Beijing 100876, Peoples R China|Natl Engn Lab Mobile Network Secur, Beijing 100876, Peoples R China;

    Beijing Univ Posts & Telecommun, Sch Comp Sci & Technol, Beijing 100876, Peoples R China|Natl Engn Lab Mobile Network Secur, Beijing 100876, Peoples R China;

    China Elect Power Res Inst, Inst Measurement, Beijing 100192, Peoples R China;

    China Elect Power Res Inst, Inst Measurement, Beijing 100192, Peoples R China;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    CG-Fuzzing; fuzzing test; ZigBee; IoT;

    机译:CG-模糊;模糊测试;ZigBee;物联网;
  • 入库时间 2022-08-17 13:46:44

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号