Fuzzing is an automated software testing technique that looks for vulnerabilities by causing crashes through the introduction of invalid, unexpected, or random data as program inputs. It is used to improve both the robustness and the security of software. In this paper we apply fuzzing to test the behavior of the Janus WebRTC media server. We describe how we used fuzz testing to fix a few important issues that had been discovered in our software. We also discuss how we leveraged the gained experience in order to build an automated process helping us mitigate the appearance of this kind of issues in the future releases of our server.
Fuzzing Janus for Fun and Profit / Amirante, A.; Castaldi, T.; Miniero, L.; Romano, S. P.; Saviano, P.; Toppi, A.. - (2019), pp. 1-7. (Intervento presentato al convegno 2019 Principles, Systems and Applications of IP Telecommunications, IPTComm 2019 tenutosi a usa nel 2019) [10.1109/IPTCOMM.2019.8920918].
Fuzzing Janus for Fun and Profit
Amirante A.;Castaldi T.;Miniero L.;Romano S. P.
;
2019
Abstract
Fuzzing is an automated software testing technique that looks for vulnerabilities by causing crashes through the introduction of invalid, unexpected, or random data as program inputs. It is used to improve both the robustness and the security of software. In this paper we apply fuzzing to test the behavior of the Janus WebRTC media server. We describe how we used fuzz testing to fix a few important issues that had been discovered in our software. We also discuss how we leveraged the gained experience in order to build an automated process helping us mitigate the appearance of this kind of issues in the future releases of our server.File | Dimensione | Formato | |
---|---|---|---|
IPTComm2019_JanusFuzzingCameraReady.pdf
solo utenti autorizzati
Tipologia:
Documento in Pre-print
Licenza:
Creative commons
Dimensione
600.61 kB
Formato
Adobe PDF
|
600.61 kB | Adobe PDF | Visualizza/Apri Richiedi una copia |
I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.