Test Model for Security Vulnerability in Web Controls based on Fuzzing

2012; Academy Publisher; Volume: 7; Issue: 4 Linguagem: Inglês

10.4304/jsw.7.4.773-778

ISSN

1796-217X

Autores

Yao Guo-xiang, Quanlong Guan, Kaibin Ni,

Tópico(s)

Security and Verification in Computing

Resumo

The number of Web controls’ security vulnerability surged with ever-changing varieties of attacks. Therefore this paper analyzes test model for Web controls’ vulnerability, and put forward a improved test model for Web controls’ vulnerability. Be aimed to test vulnerability of Web ActiveX controls combining static analysis and dynamic analysis, as well as put forward a proposal of optimizing the generation engine for test data using “heuristic rule”. Experiment results show that test model for Web controls’ vulnerability based on fuzzing is effective and feasible, and it is able to manipulate interaction problems.

Referência(s)
Altmetric
PlumX