KiF: A stateful SIP Fuzzer - Inria - Institut national de recherche en sciences et technologies du numérique Access content directly
Conference Papers Year : 2007

KiF: A stateful SIP Fuzzer

Radu State
  • Function : Author
  • PersonId : 755670
  • IdRef : 059893591

Abstract

With the recent evolution in the VoIP market, where more and more devices and services are being pushed on a very promising market, assuring their security becomes crucial. Among the most dangerous threats to VoIP, failures and bugs in the software implementation will still rank high on the list of vulnerabilities. In this paper we address the issue of detecting such vulnerabilities using a stateful fuzzer. We describe an automated attack approach capable to self-improve and to track the state context of a target device. We implemented our approach and were able to discover vulnerabilities in market leading and well known equipments and software.
Fichier principal
Vignette du fichier
Kif_A_stateful_SIP_Fuzzer.pdf (306.55 Ko) Télécharger le fichier
Origin : Files produced by the author(s)
Loading...

Dates and versions

inria-00166947 , version 1 (14-08-2007)

Identifiers

  • HAL Id : inria-00166947 , version 1

Cite

Humberto Abdelnur, Olivier Festor, Radu State. KiF: A stateful SIP Fuzzer. 1st International Conference on Principles, Systems and Applications of IP Telecommunications (IPTComm), Columbia University, Jul 2007, New York, United States. ⟨inria-00166947⟩
491 View
1153 Download

Share

Gmail Facebook X LinkedIn More