Introduction to Software Security

Videos by Elisa Heymann and Barton P. Miller
Text by Elisa Heymann, Loren Kohnfelder and Barton P. Miller

Contacts: elisa@cs.wisc.edu and bart@cs.wisc.edu.

© 2021 Elisa Heymann, Barton P. Miller and Loren Kohnfelder. All rights reserved.

Module 7: Dynamic Techniques (Fuzz Testing and Other Checkers)
7.2
Classic Fuzz Testing
Research Paper Readings

 

1988 Original fuzz project assignment in CS736 (PDF).

Project (1) on the list is the fuzz assignment.

This is the original project assignment from my graduate CS736 class, Advanced Operating Systems. This list of projects was handed out in the Fall of 1988.

1990 Original Fuzz Report (Postscript, Compressed Postscript, Gzip'd Postscript, PDF).

B.P. Miller, L. Fredriksen, and B. So, "An Empirical Study of the Reliability of UNIX Utilities", Communications of the ACM 33, 12 (December 1990). Also appears (in German translation) as "Fatale Fehlertractigkeit: Eine Empirische Studie zur Zuverlassigkeit von UNIX-Utilities", iX, March 1991.

1995 "Fuzz Revisited" Report (Postscript, Compressed Postscript, Gzip'd Postscript, PDF).

B.P. Miller, D. Koski, C.P. Lee, V. Maganty, R. Murthy, A. Natarajan, and J. Steidl, "Fuzz Revisited: A Re-examination of the Reliability of UNIX Utilities and Services", Computer Sciences Technical Report #1268, University of Wisconsin-Madison, April 1995. Appears (in German translation) as "Empirische Studie zur Zuverlasskeit von UNIX-Utilities: Nichts dazu Gerlernt", iX, September 1995.

2000 Windows NT Fuzz Report (Postscript, Compressed Postscript, Gzip'd Postscript, PDF, HTML).

J.E. Forrester and B.P. Miller, "An Empirical Study of the Robustness of Windows NT Applications Using Random Testing", 4th USENIX Windows Systems Symposium, Seattle, August 2000. Appears (in German translation) as "Empirische Studie zur Stabilität von NT-Anwendungen", iX, September 2000.

2006 Mac OS X Fuzz Report (Postscript, PDF).

B.P. Miller, G. Cooksey and F. Moore, "An Empirical Study of the Robustness of MacOS Applications Using Random Testing", First International Workshop on Random Testing, Portland, Maine, July 2006.

2020 Fuzz Report (PDF).

B.P. Miller, M. Zhang and E.R. Heymann, "The Relevance of Classic Fuzz Testing:Have We Solved This One?", IEEE Transactions on Software Engineering, accepted for publication, 2021.

The Fuzz Software and Dataset Site (Updated August 2020)

 


Valid HTML 4.01 Transitional
Last modified: Mon Feb 15 09:45:32 CST 2021 by bart