When time meets test

被引:0
作者
Jean-Louis Lanet
Hélène Le Bouder
Mohammed Benattou
Axel Legay
机构
[1] INRIA-RBA,Laboratoire LARIT
[2] LHS-PEC,undefined
[3] Université Ibn Tofail,undefined
来源
International Journal of Information Security | 2018年 / 17卷
关键词
Security; Software testing; Fuzzing; Timing attacks; Smart card; Java Card;
D O I
暂无
中图分类号
学科分类号
摘要
One of the main challenges in system’s development is to give a proof of evidence that its functionalities are correctly implemented. This objective is mostly achieved via testing techniques, which include software testing to check whether a system meets its functionalities, or security testing to express what should not happen. For the latter case, fuzzing is considered as first class citizen. It consists in exercising the system with (randomly) generated and eventually modified inputs in order to test its resistance. While fuzzing is definitively the fastest and the easiest way for testing applications, it suffers from severe limitations. Indeed, the precision of the model used for input generation: a random and/or simple model cannot reach all states and significant values. Moreover, a higher model precision can result in a combinatorial explosion of test cases. In this paper, we suggest a new approach whose main ingredient is to combine timing attacks with fuzzing techniques. This new approach, which is dedicated to work on Java Card, allows not only reducing the test space explosion, but also to simplify the fuzzing process configuration. The technique has been implemented, and we present the results obtained on two applets loaded in a Java Card.
引用
收藏
页码:395 / 409
页数:14
相关论文
共 7 条
  • [1] Richardson DJ(1985)Partition analysis: a method combining testing and verification IEEE Trans. Softw. Eng. 11 1477-1490
  • [2] Clarke LA(1988)The category-partition method for specifying and generating functional tests Commun. ACM 31 676-686
  • [3] Ostrand TJ(2015)Reversing bytecode of obfuscated java based smart card using side chanel analysis Int J Secur Appl 9 347-356
  • [4] Balcer MJ(undefined)undefined undefined undefined undefined-undefined
  • [5] Kasmi MA(undefined)undefined undefined undefined undefined-undefined
  • [6] Azizi M(undefined)undefined undefined undefined undefined-undefined
  • [7] Lanet J-L(undefined)undefined undefined undefined undefined-undefined