Discovering Software Vulnerabilities Based on Fuzz Testing
碩士 === 中原大學 === 資訊管理研究所 === 104 === In recent years, computers and Internet are widely used in many areas. As a result, computer security issues are becoming evident as time passed by. All software more or less has security vulnerabilities. If exploited by malicious hackers, vulnerabilities will cau...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Published: |
2016
|
Online Access: | http://ndltd.ncl.edu.tw/handle/758erv |
id |
ndltd-TW-104CYCU5396003 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-104CYCU53960032019-05-15T22:34:19Z http://ndltd.ncl.edu.tw/handle/758erv Discovering Software Vulnerabilities Based on Fuzz Testing 基於模糊測試的軟體漏洞挖掘研究 Yu-Ming Chung 鍾育民 碩士 中原大學 資訊管理研究所 104 In recent years, computers and Internet are widely used in many areas. As a result, computer security issues are becoming evident as time passed by. All software more or less has security vulnerabilities. If exploited by malicious hackers, vulnerabilities will cause tremendous loss to software corporations and end users. There is no doubt that discovering software vulnerabilities is an important task.False declaration and false judgment are common problems that occur to vulnerability discovering technology. Vulnerabilities have to be discovered rapidly without wasting time; the available vulnerabilities have to be located as quickly as possible. In this connection, this study focused on the implementation of Microsoft Office file processing program’s vulnerability discovering system. As far as we can see, all fuzzy testing technologies consume lots of time and system resources without processing file formats. Therefore, this study examined all software security testing methods and vulnerability discovering technologies in an attempt to design a test framework based on fuzzy testing theory and file format analysis and thereby upgrade vulnerability discovering efficiency for the software vulnerability researchers’ use. According to the data obtained from the experiment, the software vulnerability discovering system implemented by this study is sufficient to locate Office file processing software’s weakness faster than any other system and to minimize the time needed for discovering vulnerability at the same time. Chih-li Hung 洪智力 2016 學位論文 ; thesis 60 zh-TW |
collection |
NDLTD |
language |
zh-TW |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 中原大學 === 資訊管理研究所 === 104 === In recent years, computers and Internet are widely used in many areas. As a result, computer security issues are becoming evident as time passed by. All software more or less has security vulnerabilities. If exploited by malicious hackers, vulnerabilities will cause tremendous loss to software corporations and end users. There is no doubt that discovering software vulnerabilities is an important task.False declaration and false judgment are common problems that occur to vulnerability discovering technology. Vulnerabilities have to be discovered rapidly without wasting time; the available vulnerabilities have to be located as quickly as possible. In this connection, this study focused on the implementation of Microsoft Office file processing program’s vulnerability discovering system. As far as we can see, all fuzzy testing technologies consume lots of time and system resources without processing file formats. Therefore, this study examined all software security testing methods and vulnerability discovering technologies in an attempt to design a test framework based on fuzzy testing theory and file format analysis and thereby upgrade vulnerability discovering efficiency for the software vulnerability researchers’ use. According to the data obtained from the experiment, the software vulnerability discovering system implemented by this study is sufficient to locate Office file processing software’s weakness faster than any other system and to minimize the time needed for discovering vulnerability at the same time.
|
author2 |
Chih-li Hung |
author_facet |
Chih-li Hung Yu-Ming Chung 鍾育民 |
author |
Yu-Ming Chung 鍾育民 |
spellingShingle |
Yu-Ming Chung 鍾育民 Discovering Software Vulnerabilities Based on Fuzz Testing |
author_sort |
Yu-Ming Chung |
title |
Discovering Software Vulnerabilities Based on Fuzz Testing |
title_short |
Discovering Software Vulnerabilities Based on Fuzz Testing |
title_full |
Discovering Software Vulnerabilities Based on Fuzz Testing |
title_fullStr |
Discovering Software Vulnerabilities Based on Fuzz Testing |
title_full_unstemmed |
Discovering Software Vulnerabilities Based on Fuzz Testing |
title_sort |
discovering software vulnerabilities based on fuzz testing |
publishDate |
2016 |
url |
http://ndltd.ncl.edu.tw/handle/758erv |
work_keys_str_mv |
AT yumingchung discoveringsoftwarevulnerabilitiesbasedonfuzztesting AT zhōngyùmín discoveringsoftwarevulnerabilitiesbasedonfuzztesting AT yumingchung jīyúmóhúcèshìderuǎntǐlòudòngwājuéyánjiū AT zhōngyùmín jīyúmóhúcèshìderuǎntǐlòudòngwājuéyánjiū |
_version_ |
1719132086717120512 |