{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,8,20]],"date-time":"2024-08-20T13:08:38Z","timestamp":1724159318263},"publisher-location":"New York, NY, USA","reference-count":33,"publisher":"ACM","license":[{"start":{"date-parts":[[2015,8,30]],"date-time":"2015-08-30T00:00:00Z","timestamp":1440892800000},"content-version":"vor","delay-in-days":0,"URL":"http:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2015,8,30]]},"DOI":"10.1145\/2786805.2786844","type":"proceedings-article","created":{"date-parts":[[2015,8,26]],"date-time":"2015-08-26T16:48:13Z","timestamp":1440607693000},"update-policy":"http:\/\/dx.doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":33,"title":["Turning programs against each other: high coverage fuzz-testing using binary-code mutation and dynamic slicing"],"prefix":"10.1145","author":[{"given":"Ulf","family":"Karg\u00e9n","sequence":"first","affiliation":[{"name":"Link\u00f6ping University, Sweden"}]},{"given":"Nahid","family":"Shahmehri","sequence":"additional","affiliation":[{"name":"Link\u00f6ping University, Sweden"}]}],"member":"320","published-online":{"date-parts":[[2015,8,30]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"Chrome reward program rules. http:\/\/www.google. com\/about\/appsecurity\/chrome-rewards\/. Chrome reward program rules. http:\/\/www.google. com\/about\/appsecurity\/chrome-rewards\/."},{"key":"e_1_3_2_1_2_1","unstructured":"A crash course to radamsa. https:\/\/code.google.com\/p\/ouspg\/wiki\/Radamsa. A crash course to radamsa. https:\/\/code.google.com\/p\/ouspg\/wiki\/Radamsa."},{"key":"e_1_3_2_1_3_1","unstructured":"Immunity inc - resources. http: \/\/www.immunityinc.com\/resources\/index.html. Immunity inc - resources. http: \/\/www.immunityinc.com\/resources\/index.html."},{"key":"e_1_3_2_1_4_1","unstructured":"Microsoft bounty programs. https:\/\/technet. microsoft.com\/en-us\/library\/dn425036.aspx. Microsoft bounty programs. https:\/\/technet. microsoft.com\/en-us\/library\/dn425036.aspx."},{"key":"e_1_3_2_1_5_1","unstructured":"Sdl process: Verification. http:\/\/www.microsoft. com\/security\/sdl\/process\/verification.aspx. Sdl process: Verification. http:\/\/www.microsoft. com\/security\/sdl\/process\/verification.aspx."},{"key":"e_1_3_2_1_6_1","unstructured":"zzuf - multi-purpose fuzzer. http:\/\/caca.zoy.org\/wiki\/zzuf. zzuf - multi-purpose fuzzer. http:\/\/caca.zoy.org\/wiki\/zzuf."},{"key":"e_1_3_2_1_7_1","unstructured":"B. Arkin. Adobe reader and acrobat security initiative. http:\/\/blogs.adobe.com\/security\/2009\/ 05\/adobe_reader_and_acrobat_secur.html 2009. B. Arkin. Adobe reader and acrobat security initiative. http:\/\/blogs.adobe.com\/security\/2009\/ 05\/adobe_reader_and_acrobat_secur.html 2009."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315286"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.31"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2009.14"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/1455770.1455820"},{"key":"e_1_3_2_1_12_1","unstructured":"C. Evans M. Moore and T. Ormandy. Google online security blog \u2013 fuzzing at scale. http:\/\/googleonlinesecurity.blogspot.se\/2011\/ 08\/fuzzing-at-scale.html 2011. C. Evans M. Moore and T. Ormandy. Google online security blog \u2013 fuzzing at scale. http:\/\/googleonlinesecurity.blogspot.se\/2011\/ 08\/fuzzing-at-scale.html 2011."},{"key":"e_1_3_2_1_13_1","first-page":"288","volume-title":"Proceedings of the 22nd USENIX Security Symposium","author":"Finifter M.","year":"2013","unstructured":"M. Finifter , D. Akhawe , and D. Wagner . An empirical study of vulnerability rewards programs . In Proceedings of the 22nd USENIX Security Symposium , pages 273\u2013 288 , 2013 . M. Finifter, D. Akhawe, and D. Wagner. An empirical study of vulnerability rewards programs. In Proceedings of the 22nd USENIX Security Symposium, pages 273\u2013288, 2013."},{"key":"e_1_3_2_1_14_1","volume-title":"Proceedings of the Network and Distributed System Security Symposium","author":"Godefroid P.","year":"2008","unstructured":"P. Godefroid , M. Y. Levin , and D. A. Molnar . Automated whitebox fuzz testing . In Proceedings of the Network and Distributed System Security Symposium , 2008 . P. Godefroid, M. Y. Levin, and D. A. Molnar. Automated whitebox fuzz testing. In Proceedings of the Network and Distributed System Security Symposium, 2008."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.5555\/2362793.2362831"},{"key":"e_1_3_2_1_16_1","volume-title":"CERT","author":"Householder A. D.","year":"2012","unstructured":"A. D. Householder and J. M. Foote . Probability-based parameter selection for black-box fuzz testing. Technical report , CERT , 2012 . A. D. Householder and J. M. Foote. Probability-based parameter selection for black-box fuzz testing. Technical report, CERT, 2012."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2010.62"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/SCAM.2014.24"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/1065010.1065034"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/96267.96279"},{"key":"e_1_3_2_1_21_1","volume-title":"Fuzz revisited: A re-examination of the reliability of unix utilities and services. Technical report","author":"Miller B. P.","year":"1995","unstructured":"B. P. Miller , D. Koski , C. P. Lee , V. Maganty , R. Murthy , A. Natarajan , and J. Steidl . Fuzz revisited: A re-examination of the reliability of unix utilities and services. Technical report , University of Wisconsin-Madison, Computer Sciences Department , 1995 . B. P. Miller, D. Koski, C. P. Lee, V. Maganty, R. Murthy, A. Natarajan, and J. Steidl. Fuzz revisited: A re-examination of the reliability of unix utilities and services. Technical report, University of Wisconsin-Madison, Computer Sciences Department, 1995."},{"key":"e_1_3_2_1_22_1","volume-title":"CanSecWest","author":"Miller C.","year":"2010","unstructured":"C. Miller . Babysitting an army of monkeys . CanSecWest , 2010 . C. Miller. Babysitting an army of monkeys. CanSecWest, 2010."},{"key":"e_1_3_2_1_23_1","volume-title":"Independent Security Evaluators","author":"Miller C.","year":"2007","unstructured":"C. Miller and Z. N. Peterson . Analysis of mutation and generation-based fuzzing. Technical report , Independent Security Evaluators , 2007 . C. Miller and Z. N. Peterson. Analysis of mutation and generation-based fuzzing. Technical report, Independent Security Evaluators, 2007."},{"key":"e_1_3_2_1_24_1","volume-title":"Effective fuzzing strategies. CERT vulnerability discovery workshop","author":"Molnar D.","year":"2010","unstructured":"D. Molnar and L. Opstad . Effective fuzzing strategies. CERT vulnerability discovery workshop , 2010 . D. Molnar and L. Opstad. Effective fuzzing strategies. CERT vulnerability discovery workshop, 2010."},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/1254810.1254820"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/1250734.1250746"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/227607.227610"},{"key":"e_1_3_2_1_28_1","first-page":"875","volume-title":"Proceedings of the 23rd USENIX Security Symposium","author":"Rebert A.","year":"2014","unstructured":"A. Rebert , S. K. Cha , T. Avgerinos , J. Foote , D. Warren , G. Grieco , and D. Brumley . Optimizing seed selection for fuzzing . In Proceedings of the 23rd USENIX Security Symposium , pages 861\u2013 875 , 2014 . A. Rebert, S. K. Cha, T. Avgerinos, J. Foote, D. Warren, G. Grieco, and D. Brumley. Optimizing seed selection for fuzzing. In Proceedings of the 23rd USENIX Security Symposium, pages 861\u2013875, 2014."},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/1519065.1519073"},{"key":"e_1_3_2_1_30_1","volume-title":"Pearson Education","author":"Sutton M.","year":"2007","unstructured":"M. Sutton , A. Greene , and P. Amini . Fuzzing: brute force vulnerability discovery . Pearson Education , 2007 . M. Sutton, A. Greene, and P. Amini. Fuzzing: brute force vulnerability discovery. Pearson Education, 2007."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.37"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516736"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/1993498.1993532"}],"event":{"name":"ESEC\/FSE'15: Joint Meeting of the European Software Engineering Conference and the ACM SIGSOFT Symposium on the Foundations of Software Engineering","location":"Bergamo Italy","acronym":"ESEC\/FSE'15","sponsor":["SIGSOFT ACM Special Interest Group on Software Engineering"]},"container-title":["Proceedings of the 2015 10th Joint Meeting on Foundations of Software Engineering"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2786805.2786844","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,1,12]],"date-time":"2023-01-12T03:17:00Z","timestamp":1673493420000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2786805.2786844"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015,8,30]]},"references-count":33,"alternative-id":["10.1145\/2786805.2786844","10.1145\/2786805"],"URL":"https:\/\/doi.org\/10.1145\/2786805.2786844","relation":{},"subject":[],"published":{"date-parts":[[2015,8,30]]},"assertion":[{"value":"2015-08-30","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}