Symbolic assertion mining for security validation
Symbolic assertion mining for security validation
复制标题
用于安全验证的符号断言挖掘
DOI:
--
复制
发表时间:
2018
期刊:
影响因子:
--
通讯作者:
G. Pravadelli
中科院分区:
文献类型:
--
作者:
Alessandro Danese;V. Bertacco;G. Pravadelli
This paper presents DOVE, a validation framework to identify points of vulnerability inside IP firmwares. The framework relies on the symbolic simulation of the firmware to search for corner cases in its computational paths that may hide vulnerabilities. Then, DOVE automatically mine a compact set of formal assertions representing these unlikely paths to guide the analysis of the verification engineers. Experimental results on two case studies show the effectiveness of the generated assertions in pinpointing actual vulnerabilities and its efficiency in terms of execution time.