Facilitating Vulnerability Assessment through PoC Migration

被引:7
|
作者
Dai, Jiarun [1 ]
Zhang, Yuan [1 ]
Xu, Hailong [1 ]
Lyu, Haiming [1 ]
Wu, Zicheng [1 ]
Xing, Xinyu [2 ]
Yang, Min [1 ]
机构
[1] Fudan Univ, Shanghai, Peoples R China
[2] Penn State Univ, University Pk, PA 16802 USA
来源
CCS '21: PROCEEDINGS OF THE 2021 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY | 2021年
基金
上海市自然科学基金; 中国国家自然科学基金;
关键词
Vulnerability Assessment; Trace Alignment; PoC Adjustment; CODE; ROBUST;
D O I
10.1145/3460120.3484594
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Recent research shows that, even for vulnerability reports archived by MITRE/NIST, they usually contain incomplete information about the software's vulnerable versions, making users of under-reported vulnerable versions at risk. In this work, we address this problem by introducing a fuzzing-based method. Technically, this approach first collects the crashing trace on the reference version of the software. Then, it utilizes the trace to guide the mutation of the PoC input so that the target version could follow the trace similar to the one observed on the reference version. Under the mutated input, we argue that the target version's execution could have a higher chance of triggering the bug and demonstrating the vulnerability's existence. We implement this idea as an automated tool, named VULSCOPE. Using 30 real-world CVEs on 470 versions of software, VULSCOPE is demonstrated to introduce no false positives and only 7.9% false negatives while migrating PoC from one version to another. Besides, we also compare our method with two representative fuzzing tools AFL and AFLGO. We find VULSCOPE outperforms both of these existing techniques while taking the task of PoC migration. Finally, by using VULSCOPE, we identify 330 versions of software that MITRE/NIST fails to report as vulnerable.
引用
收藏
页码:3300 / 3317
页数:18
相关论文
共 50 条
  • [31] Coastal vulnerability assessment through complementary monitoring technologies: The case of riccione
    Archetti R.
    Addona F.
    Gaeta M.G.
    Cantelli L.
    Romagnoli C.
    Sistilli F.
    Stanghellini G.
    Archetti, Renata (renata.archetti@unibo.it), 1600, Sapienza Universita Editrice (01): : 5 - 12
  • [32] Climate Change Vulnerability through Spatial Assessment: A Study of Central India
    Shakya, Rajani
    Khan, Smita
    Natural Hazards Review, 25 (03):
  • [33] Seismic vulnerability of building aggregates through hybrid and indirect assessment techniques
    Maio, Rui
    Vicente, Romeu
    Formisano, Antonio
    Varum, Humberto
    BULLETIN OF EARTHQUAKE ENGINEERING, 2015, 13 (10) : 2995 - 3014
  • [34] Seismic vulnerability assessment of chemical plants through probabilistic neural networks
    Aoki, T
    Ceravolo, R
    De Stefano, A
    Genovese, C
    Sabia, D
    RELIABILITY ENGINEERING & SYSTEM SAFETY, 2002, 77 (03) : 263 - 268
  • [35] Vulnerability assessment of water supply infrastructures through multiple indicator methodology
    Borzi, Iolanda
    JOURNAL OF WATER AND CLIMATE CHANGE, 2023, 14 (11) : 3967 - 3984
  • [36] Vulnerability Assessment of Integrated Circuits Through Electromagnetic-Circuit Cosimulation
    Lu, Jiaqing
    Ozturk, Yagmur
    Bao, Wentao
    Zhang, Jingyue
    Smith, Shane
    Sertel, Kubilay
    Lee, Jin-Fa
    IEEE TRANSACTIONS ON ELECTROMAGNETIC COMPATIBILITY, 2024, 66 (05) : 1525 - 1541
  • [37] Climate Change Vulnerability through Spatial Assessment: A Study of Central India
    Shakya, Rajani
    Khan, Smita
    NATURAL HAZARDS REVIEW, 2024, 25 (03)
  • [38] LEOPARD: Identifying Vulnerable Code for Vulnerability Assessment Through Program Metrics
    Du, Xiaoning
    Chen, Bihuan
    Li, Yuekang
    Guo, Jianmin
    Zhou, Yaqin
    Liu, Yang
    Jiang, Yu
    2019 IEEE/ACM 41ST INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING (ICSE 2019), 2019, : 60 - 71
  • [39] Coastline Vulnerability Assessment through Landsat and Cubesats in a Coastal Mega City
    Nazeer, Majid
    Waqas, Muhammad
    Shahzad, Muhammad Imran
    Zia, Ibrahim
    Wu, Weicheng
    REMOTE SENSING, 2020, 12 (05)
  • [40] Seismic vulnerability of building aggregates through hybrid and indirect assessment techniques
    Rui Maio
    Romeu Vicente
    Antonio Formisano
    Humberto Varum
    Bulletin of Earthquake Engineering, 2015, 13 : 2995 - 3014