November 2018
Intermediate to advanced
382 pages
11h 20m
English
Fuzz testing is a specialized, advanced field in which attackers attempt to exploit an application through abnormal protocol use and manipulation of its states. The following table identifies some fuzz testing activities:
|
Activity |
Description |
|
Power on/power off sequences/state changes |
Perform in-depth analysis to identify how IoT devices respond to different (and unexpected) inputs in various states. This might include sending unexpected data to the IoT device during certain state changes (for example, power on/power off). |
|
Protocol tag/length/value fields |
Implant unexpected values in the protocol fields for IoT communications. This could include non-standard lengths of field inputs, unexpected characters, ... |