Collected research
Fuzzing with Code Fragments
LangFuzz resolves the tension between inputs valid enough to parse and odd enough to crash by generating programs from a language grammar while splicing in code fragments mined from tests that previously triggered defects. Run against Mozilla's JavaScript interpreter it found 105 new severe vulnerabilities in three months, and 18 crash defects in the PHP interpreter.
Record
- Researcher
- Christian Holler, Kim Herzig and Andreas Zeller
- Published by
- usenix.org
- Topic
- Other
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Christian Holler, Kim Herzig and Andreas Zeller, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .