Effective Directed Fuzzing with Hierarchical Scheduling for Web Vulnerability Detection

Fuente: Zenodo
Saved in:
Bibliographic Details
Main Authors: Lin, Zihan, Zhang, Yuan, Dai, Jiarun, Huang, Xinyou, Xiang, Bocheng, Yang, Guangliang, Yuan, Letian, Zhang, Lei, Liu, Fengyu, Chen, Tian, Yang, Min
Format: Recurso digital
Language:English
Published: Zenodo 2025
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866902012770123776
author Lin, Zihan
Zhang, Yuan
Dai, Jiarun
Huang, Xinyou
Xiang, Bocheng
Yang, Guangliang
Yuan, Letian
Zhang, Lei
Liu, Fengyu
Chen, Tian
Yang, Min
author_facet Lin, Zihan
Zhang, Yuan
Dai, Jiarun
Huang, Xinyou
Xiang, Bocheng
Yang, Guangliang
Yuan, Letian
Zhang, Lei
Liu, Fengyu
Chen, Tian
Yang, Min
contents <h1>WDFuzz Artifact</h1> <p>This is artifact of paper WDFuzz: Effective Directed Fuzzing with Hierarchical Scheduling for Web Vulnerability Detection.</p> <p>First of all, use <code>cat WDFUZZ_part_* > WDFUZZ.tar.gz</code> to extract the artifact. </p> <p>Please refer to <code>quick-reproduction-guide.pdf</code> to reproduce the results. </p> <h2>Directory Structure</h2> <ul> <li> <p><strong>SA</strong> : Static Analysis</p> </li> <li> <p><strong>INSTR</strong> : Instrumentation</p> </li> <li> <p><strong>DF</strong> : Dynamic Fuzzing</p> </li> <li> <p><strong>raw_data</strong> : Raw data of our experiments.</p> </li> <li> <p><strong>witcher-dependencies</strong> : Our modified version of witcher for comparison experiments.</p> <blockquote> <p>Witcher (Java) has some implementation errors in sending POST requests, and Witcher do not support login of some applications. To fairly conduct comparison experiment, we've revised their codes. So, Witcher in <code>witcher-dependencies</code> is our revised version.</p> </blockquote> </li> <li> <p><strong>dataset</strong> : Web applications of our dataset.</p> <blockquote> <p>For brief and quick reproduction of our experiment, see <code>README.md</code> in <code>./dataset</code>.</p> </blockquote> <p> </p> </li> </ul> <h2>Access this Artifact</h2> <p>Our work complies with the requirements of open science of the USENIX Security conference. However, as our work is a vulnerability detection tool, we have restricted the access permission of this artifact. If you need to access and download it, please contact the authors.</p> <p> </p>
format Recurso digital
id zenodo_https___doi_org_10_5281_zenodo_15037915
institution Zenodo
language eng
publishDate 2025
publisher Zenodo
record_format zenodo
spellingShingle Effective Directed Fuzzing with Hierarchical Scheduling for Web Vulnerability Detection
Lin, Zihan
Zhang, Yuan
Dai, Jiarun
Huang, Xinyou
Xiang, Bocheng
Yang, Guangliang
Yuan, Letian
Zhang, Lei
Liu, Fengyu
Chen, Tian
Yang, Min
Computer security
<h1>WDFuzz Artifact</h1> <p>This is artifact of paper WDFuzz: Effective Directed Fuzzing with Hierarchical Scheduling for Web Vulnerability Detection.</p> <p>First of all, use <code>cat WDFUZZ_part_* > WDFUZZ.tar.gz</code> to extract the artifact. </p> <p>Please refer to <code>quick-reproduction-guide.pdf</code> to reproduce the results. </p> <h2>Directory Structure</h2> <ul> <li> <p><strong>SA</strong> : Static Analysis</p> </li> <li> <p><strong>INSTR</strong> : Instrumentation</p> </li> <li> <p><strong>DF</strong> : Dynamic Fuzzing</p> </li> <li> <p><strong>raw_data</strong> : Raw data of our experiments.</p> </li> <li> <p><strong>witcher-dependencies</strong> : Our modified version of witcher for comparison experiments.</p> <blockquote> <p>Witcher (Java) has some implementation errors in sending POST requests, and Witcher do not support login of some applications. To fairly conduct comparison experiment, we've revised their codes. So, Witcher in <code>witcher-dependencies</code> is our revised version.</p> </blockquote> </li> <li> <p><strong>dataset</strong> : Web applications of our dataset.</p> <blockquote> <p>For brief and quick reproduction of our experiment, see <code>README.md</code> in <code>./dataset</code>.</p> </blockquote> <p> </p> </li> </ul> <h2>Access this Artifact</h2> <p>Our work complies with the requirements of open science of the USENIX Security conference. However, as our work is a vulnerability detection tool, we have restricted the access permission of this artifact. If you need to access and download it, please contact the authors.</p> <p> </p>
title Effective Directed Fuzzing with Hierarchical Scheduling for Web Vulnerability Detection
topic Computer security
url https://doi.org/10.5281/zenodo.15037915