针对目前Fuzzing技术中变异因子彼此之间是独立的,存在着测试效率不高以及由于前期静态分析不正确而产生漏报的缺点,提出了变异树的概念。将变异因子以树模型的方式组织起来,设计了有效的变异策略。在当前Fuzzing平台的基础上,实现了基于变异树的Fuzzing平台设计,最后通过当前的Fuzzing平台和基于变异树的Fuzzing平台对Visualpng以及KMPlayer进行Fuzzing测试结果的比较,表明了该方法的可行性。
To the detects of low efficiency and problems that if there are errors in analysis of protocols a vulnerability will be missed because of self-governed relation of mutators in the technique based on Fuzzing, a conception of Tree-Mutator is proposed. Mutators are organized in tree model and effect mutatoring stategy is designed. Based on Fuzzing platform at present Fuzzing platform based on Tree- Mutator is designed. At last the results of Fuzzing VisualPng and KMPlayer on Fuzzing platform based on Tree-Mutator compared with the results on the current Fuzzing platform, proving validity of our method is proven.