Ambusher: Exploring the Security of Distributed SDN Controllers Through Protocol State Fuzzing

Fuente: arXiv
Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Kim, Jinwoo, Seo, Minjae, Marin, Eduard, Lee, Seungsoo, Nam, Jaehyun, Shin, Seungwon
Format: Preprint
Veröffentlicht: 2025
Schlagworte:
Online-Zugang:
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
_version_ 1866917022268391424
author Kim, Jinwoo
Seo, Minjae
Marin, Eduard
Lee, Seungsoo
Nam, Jaehyun
Shin, Seungwon
author_facet Kim, Jinwoo
Seo, Minjae
Marin, Eduard
Lee, Seungsoo
Nam, Jaehyun
Shin, Seungwon
contents Distributed SDN (Software-Defined Networking) controllers have rapidly become an integral element of Wide Area Networks (WAN), particularly within SD-WAN, providing scalability and fault-tolerance for expansive network infrastructures. However, the architecture of these controllers introduces new potential attack surfaces that have thus far received inadequate attention. In response to these concerns, we introduce Ambusher, a testing tool designed to discover vulnerabilities within protocols used in distributed SDN controllers. Ambusher achieves this by leveraging protocol state fuzzing, which systematically finds attack scenarios based on an inferred state machine. Since learning states from a cluster is complicated, Ambusher proposes a novel methodology that extracts a single and relatively simple state machine, achieving efficient state-based fuzzing. Our evaluation of Ambusher, conducted on a real SD-WAN deployment spanning two campus networks and one enterprise network, illustrates its ability to uncover 6 potential vulnerabilities in the widely used distributed controller platform.
format Preprint
id arxiv_https___arxiv_org_abs_2510_15798
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle Ambusher: Exploring the Security of Distributed SDN Controllers Through Protocol State Fuzzing
Kim, Jinwoo
Seo, Minjae
Marin, Eduard
Lee, Seungsoo
Nam, Jaehyun
Shin, Seungwon
Cryptography and Security
Networking and Internet Architecture
Distributed SDN (Software-Defined Networking) controllers have rapidly become an integral element of Wide Area Networks (WAN), particularly within SD-WAN, providing scalability and fault-tolerance for expansive network infrastructures. However, the architecture of these controllers introduces new potential attack surfaces that have thus far received inadequate attention. In response to these concerns, we introduce Ambusher, a testing tool designed to discover vulnerabilities within protocols used in distributed SDN controllers. Ambusher achieves this by leveraging protocol state fuzzing, which systematically finds attack scenarios based on an inferred state machine. Since learning states from a cluster is complicated, Ambusher proposes a novel methodology that extracts a single and relatively simple state machine, achieving efficient state-based fuzzing. Our evaluation of Ambusher, conducted on a real SD-WAN deployment spanning two campus networks and one enterprise network, illustrates its ability to uncover 6 potential vulnerabilities in the widely used distributed controller platform.
title Ambusher: Exploring the Security of Distributed SDN Controllers Through Protocol State Fuzzing
topic Cryptography and Security
Networking and Internet Architecture
url https://arxiv.org/abs/2510.15798