PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
January 1, 202140 citationsOpen Access

Favocado: Fuzzing the Binding Code of JavaScript Engines Using Semantically Correct Test Cases

SDSung Ta DinhHCHaehyun ChoKMKyle Martin

Key Points

Key points are not available for this paper at this time.

Abstract

JavaScript runtime systems include some specialized programming interfaces, called binding layers. Binding layers translate data representations between JavaScript and unsafe low-level languages, such as C and C++, by converting data between different types. Due to the wide adoption of JavaScript (and JavaScript engines) in the entire computing ecosystem, discovering bugs in JavaScript binding layers is critical. Nonetheless, existing JavaScript fuzzers cannot adequately fuzz binding layers due to two major challenges: Generating syntactically and semantically correct test cases and reducing the size of the input space for fuzzing.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Dinh et al. (2021) studied this question.

synapsesocial.com/papers/6a1d2809ba3016ff712f2c3ahttps://doi.org/10.14722/ndss.2021.24224
Ask AI
Helpful
Bookmark
Share
View Full Paper

Also Consider

Synapse has enriched 4 closely related papers on similar clinical questions. Consider them for comparative context:

  1. 1Optimizing Seed Selection for Fuzzing2018 · 153 citations
  2. 2Most Websites Don't Need to Vibrate: A Cost-Benefit Approach to Improving Browser Security2017 · 12 citations
  3. 3CodeAlchemist: Semantics-Aware Code Generation to Find Vulnerabilities in JavaScript Engines2019 · 129 citations
  4. 4Matryoshka: Fuzzing Deeply Nested Branches2019 · 12 citations