KiF: A stateful SIP Fuzzer

Humberto Abdelnur 1 Olivier Festor 1 Radu State 1
1 MADYNES - Management of dynamic networks and services
INRIA Lorraine, LORIA - Laboratoire Lorrain de Recherche en Informatique et ses Applications
Abstract : With the recent evolution in the VoIP market, where more and more devices and services are being pushed on a very promising market, assuring their security becomes crucial. Among the most dangerous threats to VoIP, failures and bugs in the software implementation will still rank high on the list of vulnerabilities. In this paper we address the issue of detecting such vulnerabilities using a stateful fuzzer. We describe an automated attack approach capable to self-improve and to track the state context of a target device. We implemented our approach and were able to discover vulnerabilities in market leading and well known equipments and software.
Type de document :
Communication dans un congrès
1st International Conference on Principles, Systems and Applications of IP Telecommunications (IPTComm), Jul 2007, New York, United States. ACM SIGCOMM
Liste complète des métadonnées

Littérature citée [12 références]  Voir  Masquer  Télécharger

https://hal.inria.fr/inria-00166947
Contributeur : Humberto Abdelnur <>
Soumis le : mardi 14 août 2007 - 09:37:30
Dernière modification le : jeudi 11 janvier 2018 - 06:19:50
Document(s) archivé(s) le : jeudi 8 avril 2010 - 21:15:06

Fichier

Kif_A_stateful_SIP_Fuzzer.pdf
Fichiers produits par l'(les) auteur(s)

Identifiants

  • HAL Id : inria-00166947, version 1

Collections

Citation

Humberto Abdelnur, Olivier Festor, Radu State. KiF: A stateful SIP Fuzzer. 1st International Conference on Principles, Systems and Applications of IP Telecommunications (IPTComm), Jul 2007, New York, United States. ACM SIGCOMM. 〈inria-00166947〉

Partager

Métriques

Consultations de la notice

500

Téléchargements de fichiers

620