http://streaming.fem.tu-ilmenau.de
Das Streaming-Portal der FeM e.V.
zur Eltern-Kategorie
Autodafe: An Act of Software Torture
Stream: Autodafe: An Act of Software Torture
Datum: 28.12.2005
Autor: Martin Vuagnoux
Beschreibung: Automated vulnerability searching tools have led to a dramatic increase of the rate at which such flaws are discovered. One particular searching technique is fault injection – i.e. insertion of random data into input files, buffers or protocol packets, combined with a systematic monitoring of memory violations. Even if these tools allow to uncover a lot of vulnerabilities, they are still very primitive; despite their poor efficiency, they are useful because of the very high density of such vulnerabilities in modern software.