Test Model for Security Vulnerability in Web Controls based on Fuzzing
2012; Academy Publisher; Volume: 7; Issue: 4 Linguagem: Inglês
10.4304/jsw.7.4.773-778
ISSN1796-217X
AutoresYao Guo-xiang, Quanlong Guan, Kaibin Ni,
Tópico(s)Security and Verification in Computing
ResumoThe number of Web controls’ security vulnerability surged with ever-changing varieties of attacks. Therefore this paper analyzes test model for Web controls’ vulnerability, and put forward a improved test model for Web controls’ vulnerability. Be aimed to test vulnerability of Web ActiveX controls combining static analysis and dynamic analysis, as well as put forward a proposal of optimizing the generation engine for test data using “heuristic rule”. Experiment results show that test model for Web controls’ vulnerability based on fuzzing is effective and feasible, and it is able to manipulate interaction problems.
Referência(s)