{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,29]],"date-time":"2026-07-29T14:46:57Z","timestamp":1785336417270,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":60,"publisher":"ACM","license":[{"start":{"date-parts":[[2023,7,12]],"date-time":"2023-07-12T00:00:00Z","timestamp":1689120000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"DOI":"10.13039\/501100002347","name":"Bundesministerium f&uuml;r Bildung und Forschung","doi-asserted-by":"publisher","award":["CPSec - 16KIS1565 and 16KIS1564K"],"award-info":[{"award-number":["CPSec - 16KIS1565 and 16KIS1564K"]}],"id":[{"id":"10.13039\/501100002347","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2023,7,12]]},"DOI":"10.1145\/3597926.3598115","type":"proceedings-article","created":{"date-parts":[[2023,7,13]],"date-time":"2023-07-13T20:12:53Z","timestamp":1689279173000},"page":"1031-1042","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":23,"title":["Fuzzing Embedded Systems using Debug Interfaces"],"prefix":"10.1145","author":[{"given":"Max","family":"Eisele","sequence":"first","affiliation":[{"name":"Robert Bosch, Germany \/ Saarland University, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Daniel","family":"Ebert","sequence":"additional","affiliation":[{"name":"Robert Bosch, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Christopher","family":"Huth","sequence":"additional","affiliation":[{"name":"Robert Bosch, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Andreas","family":"Zeller","sequence":"additional","affiliation":[{"name":"CISPA Helmholtz Center for Information Security, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2023,7,13]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/174675.175935"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/316158.316166"},{"key":"e_1_3_2_1_3_1","volume-title":"Arduino Default Fault Handler. https:\/\/github.com\/arduino\/ArduinoCore-samd\/blob\/104f07f9053c49f60ceb0b09f9ae958fdee82cb8\/cores\/arduino\/cortex_handlers.c##L28","unstructured":"Arduino. 2022. Arduino Default Fault Handler. https:\/\/github.com\/arduino\/ArduinoCore-samd\/blob\/104f07f9053c49f60ceb0b09f9ae958fdee82cb8\/cores\/arduino\/cortex_handlers.c##L28 Arduino. 2022. Arduino Default Fault Handler. https:\/\/github.com\/arduino\/ArduinoCore-samd\/blob\/104f07f9053c49f60ceb0b09f9ae958fdee82cb8\/cores\/arduino\/cortex_handlers.c##L28"},{"key":"e_1_3_2_1_4_1","volume-title":"Proceedings of the 3rd Reversing and Offensive-oriented Trends Symposium. 1\u20139.","author":"Bogad Katharina","year":"2019","unstructured":"Katharina Bogad and Manuel Huber . 2019 . Harzer roller: Linker-based instrumentation for enhanced embedded security testing . In Proceedings of the 3rd Reversing and Offensive-oriented Trends Symposium. 1\u20139. Katharina Bogad and Manuel Huber. 2019. Harzer roller: Linker-based instrumentation for enhanced embedded security testing. In Proceedings of the 3rd Reversing and Offensive-oriented Trends Symposium. 1\u20139."},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"crossref","first-page":"79","DOI":"10.1109\/MS.2020.3016773","article-title":"Fuzzing: Challenges and Reflections","volume":"38","author":"B\u00f6hme Marcel","year":"2021","unstructured":"Marcel B\u00f6hme , Cristian Cadar , and Abhik Roychoudhury . 2021 . Fuzzing: Challenges and Reflections .. IEEE Softw. , 38 , 3 (2021), 79 \u2013 86 . Marcel B\u00f6hme, Cristian Cadar, and Abhik Roychoudhury. 2021. Fuzzing: Challenges and Reflections.. IEEE Softw., 38, 3 (2021), 79\u201386.","journal-title":"IEEE Softw."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/3368089.3409729"},{"key":"e_1_3_2_1_7_1","volume-title":"Fuzzing Framework for ESP32 Microcontrollers. In 2020 IEEE International Workshop on Information Forensics and Security (WIFS). 1\u20136.","author":"B\u00f6rsig Matthias","year":"2020","unstructured":"Matthias B\u00f6rsig , Sven Nitzsche , Max Eisele , Roland Gr\u00f6ll , J\u00fcrgen Becker , and Ingmar Baumgart . 2020 . Fuzzing Framework for ESP32 Microcontrollers. In 2020 IEEE International Workshop on Information Forensics and Security (WIFS). 1\u20136. Matthias B\u00f6rsig, Sven Nitzsche, Max Eisele, Roland Gr\u00f6ll, J\u00fcrgen Becker, and Ingmar Baumgart. 2020. Fuzzing Framework for ESP32 Microcontrollers. In 2020 IEEE International Workshop on Information Forensics and Security (WIFS). 1\u20136."},{"key":"e_1_3_2_1_8_1","volume-title":"29th USENIX Security Symposium (USENIX Security 20)","author":"Clements Abraham A","year":"2020","unstructured":"Abraham A Clements , Eric Gustafson , Tobias Scharnowski , Paul Grosen , David Fritz , Christopher Kruegel , Giovanni Vigna , Saurabh Bagchi , and Mathias Payer . 2020 . HALucinator: Firmware re-hosting through abstraction layer emulation . In 29th USENIX Security Symposium (USENIX Security 20) . 1201\u20131218. Abraham A Clements, Eric Gustafson, Tobias Scharnowski, Paul Grosen, David Fritz, Christopher Kruegel, Giovanni Vigna, Saurabh Bagchi, and Mathias Payer. 2020. HALucinator: Firmware re-hosting through abstraction layer emulation. In 29th USENIX Security Symposium (USENIX Security 20). 1201\u20131218."},{"key":"e_1_3_2_1_9_1","first-page":"1","article-title":"A simple, fast dominance algorithm","volume":"4","author":"Cooper Keith D","year":"2001","unstructured":"Keith D Cooper , Timothy J Harvey , and Ken Kennedy . 2001 . A simple, fast dominance algorithm . Software Practice & Experience , 4 , 1 - 10 (2001), 1\u20138. Keith D Cooper, Timothy J Harvey, and Ken Kennedy. 2001. A simple, fast dominance algorithm. Software Practice & Experience, 4, 1-10 (2001), 1\u20138.","journal-title":"Software Practice & Experience"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"crossref","first-page":"19","DOI":"10.1145\/1255450.1255452","article-title":"A practical interprocedural dominance algorithm","volume":"29","author":"Sutter Bjorn De","year":"2007","unstructured":"Bjorn De Sutter , Ludo Van Put , and Koen De Bosschere . 2007 . A practical interprocedural dominance algorithm . ACM Transactions on Programming Languages and Systems (TOPLAS) , 29 , 4 (2007), 19 \u2013es. Bjorn De Sutter, Ludo Van Put, and Koen De Bosschere. 2007. A practical interprocedural dominance algorithm. ACM Transactions on Programming Languages and Systems (TOPLAS), 29, 4 (2007), 19\u2013es.","journal-title":"ACM Transactions on Programming Languages and Systems (TOPLAS)"},{"key":"e_1_3_2_1_11_1","volume-title":"Retrowrite: Statically Instrumenting COTS Binaries for Fuzzing and Sanitization. In 2020 IEEE Symposium on Security and Privacy (SP). 1497\u20131511","author":"Dinesh Sushant","year":"2020","unstructured":"Sushant Dinesh , Nathan Burow , Dongyan Xu , and Mathias Payer . 2020 . Retrowrite: Statically Instrumenting COTS Binaries for Fuzzing and Sanitization. In 2020 IEEE Symposium on Security and Privacy (SP). 1497\u20131511 . Sushant Dinesh, Nathan Burow, Dongyan Xu, and Mathias Payer. 2020. Retrowrite: Statically Instrumenting COTS Binaries for Fuzzing and Sanitization. In 2020 IEEE Symposium on Security and Privacy (SP). 1497\u20131511."},{"key":"e_1_3_2_1_12_1","unstructured":"Max Eisele. 2022. Buffer Overflow in cy_json_parser.c. https:\/\/github.com\/Infineon\/connectivity-utilities\/issues\/2 Max Eisele. 2022. Buffer Overflow in cy_json_parser.c. https:\/\/github.com\/Infineon\/connectivity-utilities\/issues\/2"},{"key":"e_1_3_2_1_13_1","unstructured":"Max Eisele. 2022. Infinite Loop in STM32 SCSI Driver. https:\/\/github.com\/STMicroelectronics\/STM32CubeL4\/issues\/69 Max Eisele. 2022. Infinite Loop in STM32 SCSI Driver. https:\/\/github.com\/STMicroelectronics\/STM32CubeL4\/issues\/69"},{"key":"e_1_3_2_1_14_1","unstructured":"Max Eisele. 2022. Null Pointer Dereference in cy_json_parser.c. https:\/\/github.com\/Infineon\/connectivity-utilities\/issues\/1 Max Eisele. 2022. Null Pointer Dereference in cy_json_parser.c. https:\/\/github.com\/Infineon\/connectivity-utilities\/issues\/1"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"crossref","unstructured":"Max Camillo Eisele Marcello Maugeri Rachna Shriwas Christopher Huth and Giampaolo Bella. 2022. Embedded Fuzzing: a Review of Challenges Tools and Solutions. Cybersecurity. Max Camillo Eisele Marcello Maugeri Rachna Shriwas Christopher Huth and Giampaolo Bella. 2022. Embedded Fuzzing: a Review of Challenges Tools and Solutions. Cybersecurity.","DOI":"10.1186\/s42400-022-00123-y"},{"key":"e_1_3_2_1_16_1","unstructured":"Espressif. 2016. ESP32-DevKitC V4. https:\/\/docs.espressif.com\/projects\/esp-idf\/en\/latest\/esp32\/hw-reference\/esp32\/get-started-devkitc.html Espressif. 2016. ESP32-DevKitC V4. https:\/\/docs.espressif.com\/projects\/esp-idf\/en\/latest\/esp32\/hw-reference\/esp32\/get-started-devkitc.html"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3453093"},{"key":"e_1_3_2_1_18_1","volume-title":"29th USENIX Security Symposium (USENIX Security 20)","author":"Feng Bo","year":"2020","unstructured":"Bo Feng , Alejandro Mera , and Long Lu . 2020 . P2im: Scalable and hardware-independent firmware testing via automatic peripheral interface modeling . In 29th USENIX Security Symposium (USENIX Security 20) . 1237\u20131254. Bo Feng, Alejandro Mera, and Long Lu. 2020. P2im: Scalable and hardware-independent firmware testing via automatic peripheral interface modeling. In 29th USENIX Security Symposium (USENIX Security 20). 1237\u20131254."},{"key":"e_1_3_2_1_19_1","volume-title":"Proceedings of the 14th USENIX Conference on Offensive Technologies. 10\u201310","author":"Fioraldi Andrea","year":"2020","unstructured":"Andrea Fioraldi , Dominik Maier , Heiko Ei\u00df feldt, and Marc Heuse . 2020 . AFL++ combining incremental steps of fuzzing research . In Proceedings of the 14th USENIX Conference on Offensive Technologies. 10\u201310 . Andrea Fioraldi, Dominik Maier, Heiko Ei\u00df feldt, and Marc Heuse. 2020. AFL++ combining incremental steps of fuzzing research. In Proceedings of the 14th USENIX Conference on Offensive Technologies. 10\u201310."},{"key":"e_1_3_2_1_20_1","unstructured":"freeRTOS. 2022. Debugging Hard Fault & Other Exceptions. https:\/\/www.freertos.org\/Debugging-Hard-Faults-On-Cortex-M-Microcontrollers.html freeRTOS. 2022. Debugging Hard Fault & Other Exceptions. https:\/\/www.freertos.org\/Debugging-Hard-Faults-On-Cortex-M-Microcontrollers.html"},{"key":"e_1_3_2_1_21_1","first-page":"108","article-title":"Embedding with GNU: the GDB remote serial protocol","volume":"12","author":"Gatliff Bill","year":"1999","unstructured":"Bill Gatliff . 1999 . Embedding with GNU: the GDB remote serial protocol . Embedded Systems Programming , 12 (1999), 108 \u2013 113 . Bill Gatliff. 1999. Embedding with GNU: the GDB remote serial protocol. Embedded Systems Programming, 12 (1999), 108\u2013113.","journal-title":"Embedded Systems Programming"},{"key":"e_1_3_2_1_22_1","unstructured":"SEGGER Microcontroller GmbH. 2019. User guide of the J-Link application program interface (API). SEGGER Microcontroller GmbH. 2019. User guide of the J-Link application program interface (API)."},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/2093548.2093564"},{"key":"e_1_3_2_1_24_1","unstructured":"Google. 2016. Fuzzer Test Suite. https:\/\/github.com\/google\/fuzzer-test-suite Accessed: 2022-11-22. Google. 2016. Fuzzer Test Suite. https:\/\/github.com\/google\/fuzzer-test-suite Accessed: 2022-11-22."},{"key":"e_1_3_2_1_25_1","unstructured":"Samuel Gro\u00df. 2020. TrapFuzz. https:\/\/github.com\/googleprojectzero\/p0tools\/tree\/master\/TrapFuzz Samuel Gro\u00df. 2020. TrapFuzz. https:\/\/github.com\/googleprojectzero\/p0tools\/tree\/master\/TrapFuzz"},{"key":"e_1_3_2_1_26_1","volume-title":"Embedded systems design","author":"Heath Steve","unstructured":"Steve Heath . 2002. Embedded systems design . Elsevier . Steve Heath. 2002. Embedded systems design. Elsevier."},{"key":"e_1_3_2_1_27_1","unstructured":"Infineon. 2018. CY8CKIT-062-WiFi-BT PSoC 6 WiFi-BT Pioneer Kit. https:\/\/www.infineon.com\/cms\/en\/product\/evaluation-boards\/cy8ckit-062-wifi-bt\/ Infineon. 2018. CY8CKIT-062-WiFi-BT PSoC 6 WiFi-BT Pioneer Kit. https:\/\/www.infineon.com\/cms\/en\/product\/evaluation-boards\/cy8ckit-062-wifi-bt\/"},{"key":"e_1_3_2_1_28_1","volume-title":"30th USENIX Security Symposium (USENIX Security 21)","author":"Johnson Evan","year":"2021","unstructured":"Evan Johnson , Maxwell Bland , YiFei Zhu , Joshua Mason , Stephen Checkoway , Stefan Savage , and Kirill Levchenko . 2021 . Jetset: Targeted firmware rehosting for embedded systems . In 30th USENIX Security Symposium (USENIX Security 21) . 321\u2013338. Evan Johnson, Maxwell Bland, YiFei Zhu, Joshua Mason, Stephen Checkoway, Stefan Savage, and Kirill Levchenko. 2021. Jetset: Targeted firmware rehosting for embedded systems. In 30th USENIX Security Symposium (USENIX Security 21). 321\u2013338."},{"key":"e_1_3_2_1_29_1","unstructured":"Sultan Qasim Khan. 2020. Microcontroller Readback Protection: Bypasses and Defenses. Sultan Qasim Khan. 2020. Microcontroller Readback Protection: Bypasses and Defenses."},{"key":"e_1_3_2_1_30_1","unstructured":"Lauterbach. [n. d.]. Lauterbach Development Tools. https:\/\/www.lauterbach.com Accessed: 2022-11-22. Lauterbach. [n. d.]. Lauterbach Development Tools. https:\/\/www.lauterbach.com Accessed: 2022-11-22."},{"key":"e_1_3_2_1_31_1","volume-title":"Proceedings of the 44th International Conference on Software Engineering. 1\u201312","author":"Li Wenqiang","year":"2022","unstructured":"Wenqiang Li , Jiameng Shi , Fengjun Li , Jingqiang Lin , Wei Wang , and Le Guan . 2022 . \u03bc AFL: non-intrusive feedback-driven fuzzing for microcontroller firmware . In Proceedings of the 44th International Conference on Software Engineering. 1\u201312 . Wenqiang Li, Jiameng Shi, Fengjun Li, Jingqiang Lin, Wei Wang, and Le Guan. 2022. \u03bc AFL: non-intrusive feedback-driven fuzzing for microcontroller firmware. In Proceedings of the 44th International Conference on Software Engineering. 1\u201312."},{"key":"e_1_3_2_1_32_1","unstructured":"LLVM. 2015. libFuzzer \u2013 a library for coverage-guided fuzz testing. https:\/\/llvm.org\/docs\/LibFuzzer.html Accessed: 2022-11-22. LLVM. 2015. libFuzzer \u2013 a library for coverage-guided fuzz testing. https:\/\/llvm.org\/docs\/LibFuzzer.html Accessed: 2022-11-22."},{"key":"e_1_3_2_1_33_1","volume-title":"Getting to know GDB. Linux Journal, 29","author":"Loukides Mike","year":"1996","unstructured":"Mike Loukides and Andy Oram . 1996. Getting to know GDB. Linux Journal, 29 ( 1996 ). Mike Loukides and Andy Oram. 1996. Getting to know GDB. Linux Journal, 29 (1996)."},{"key":"e_1_3_2_1_34_1","article-title":"The art, science, and engineering of fuzzing: A survey","author":"Marie Man\u00e8s Valentin Jean","year":"2019","unstructured":"Valentin Jean Marie Man\u00e8s , HyungSeok Han , Choongwoo Han , Sang Kil Cha , Manuel Egele , Edward J Schwartz , and Maverick Woo . 2019 . The art, science, and engineering of fuzzing: A survey . IEEE Transactions on Software Engineering. Valentin Jean Marie Man\u00e8s, HyungSeok Han, Choongwoo Han, Sang Kil Cha, Manuel Egele, Edward J Schwartz, and Maverick Woo. 2019. The art, science, and engineering of fuzzing: A survey. IEEE Transactions on Software Engineering.","journal-title":"IEEE Transactions on Software Engineering."},{"key":"e_1_3_2_1_35_1","volume-title":"Model Checking Software: 12th International SPIN Workshop, San Francisco, CA, USA, August 22-24, 2005. Proceedings 12","author":"Mercer Eric","year":"2005","unstructured":"Eric Mercer and Michael Jones . 2005 . Model checking machine code with the GNU debugger . In Model Checking Software: 12th International SPIN Workshop, San Francisco, CA, USA, August 22-24, 2005. Proceedings 12 . 251\u2013265. Eric Mercer and Michael Jones. 2005. Model checking machine code with the GNU debugger. In Model Checking Software: 12th International SPIN Workshop, San Francisco, CA, USA, August 22-24, 2005. Proceedings 12. 251\u2013265."},{"key":"e_1_3_2_1_36_1","unstructured":"Zalewski Michal. 2017. American Fuzzy Lop (AFL). Zalewski Michal. 2017. American Fuzzy Lop (AFL)."},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1145\/96267.96279"},{"key":"e_1_3_2_1_38_1","volume-title":"Proc. Workshop Binary Anal. Res.(Colocated NDSS Symp.). 18","author":"Muench Marius","year":"2018","unstructured":"Marius Muench , Dario Nisi , Aur\u00e9lien Francillon , and Davide Balzarotti . 2018 . Avatar 2: A multi-target orchestration platform . In Proc. Workshop Binary Anal. Res.(Colocated NDSS Symp.). 18 , 1\u201311. Marius Muench, Dario Nisi, Aur\u00e9lien Francillon, and Davide Balzarotti. 2018. Avatar 2: A multi-target orchestration platform. In Proc. Workshop Binary Anal. Res.(Colocated NDSS Symp.). 18, 1\u201311."},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"crossref","unstructured":"Marius Muench Jan Stijohann Frank Kargl Aur\u00e9lien Francillon and Davide Balzarotti. 2018. What You Corrupt Is Not What You Crash: Challenges in Fuzzing Embedded Devices.. In NDSS. Marius Muench Jan Stijohann Frank Kargl Aur\u00e9lien Francillon and Davide Balzarotti. 2018. What You Corrupt Is Not What You Crash: Challenges in Fuzzing Embedded Devices.. In NDSS.","DOI":"10.14722\/ndss.2018.23166"},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00069"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484787"},{"key":"e_1_3_2_1_42_1","unstructured":"National Security Agency. 2019. Ghidra. https:\/\/ghidra-sre.org\/ Accessed: 2021-12-20. National Security Agency. 2019. Ghidra. https:\/\/ghidra-sre.org\/ Accessed: 2021-12-20."},{"key":"e_1_3_2_1_43_1","unstructured":"National Security Agency. 2022. Ghidra function hasNoReturn. https:\/\/ghidra.re\/ghidra_docs\/api\/ghidra\/program\/model\/listing\/Function.html##hasNoReturn() National Security Agency. 2022. Ghidra function hasNoReturn. https:\/\/ghidra.re\/ghidra_docs\/api\/ghidra\/program\/model\/listing\/Function.html##hasNoReturn()"},{"key":"e_1_3_2_1_44_1","volume-title":"2015 IEEE Symposium in Low-Power and High-Speed Chips (COOL CHIPS XVIII). 1\u20133.","author":"Oh JinSeok","year":"2015","unstructured":"JinSeok Oh , Sungyu Kim , Eunji Jeong , and Soo-Mook Moon . 2015 . OS-less dynamic binary instrumentation for embedded firmware . In 2015 IEEE Symposium in Low-Power and High-Speed Chips (COOL CHIPS XVIII). 1\u20133. JinSeok Oh, Sungyu Kim, Eunji Jeong, and Soo-Mook Moon. 2015. OS-less dynamic binary instrumentation for embedded firmware. In 2015 IEEE Symposium in Low-Power and High-Speed Chips (COOL CHIPS XVIII). 1\u20133."},{"key":"e_1_3_2_1_45_1","volume-title":"2021 IEEE Symposium on Security and Privacy (SP). 833\u2013851","author":"Pang Chengbin","year":"2021","unstructured":"Chengbin Pang , Ruotong Yu , Yaohui Chen , Eric Koskinen , Georgios Portokalidis , Bing Mao , and Jun Xu . 2021 . SoK: All you ever wanted to know about x86\/x64 binary disassembly but were afraid to ask . In 2021 IEEE Symposium on Security and Privacy (SP). 833\u2013851 . Chengbin Pang, Ruotong Yu, Yaohui Chen, Eric Koskinen, Georgios Portokalidis, Bing Mao, and Jun Xu. 2021. SoK: All you ever wanted to know about x86\/x64 binary disassembly but were afraid to ask. In 2021 IEEE Symposium on Security and Privacy (SP). 833\u2013851."},{"key":"e_1_3_2_1_46_1","volume-title":"Fuzzware: Using Precise MMIO Modeling for Effective Firmware Fuzzing. 31st USENIX Security Symposium (USENIX Security 22)","author":"Scharnowski Tobias","year":"2022","unstructured":"Tobias Scharnowski , Nils Bars , Moritz Schloegel , Eric Gustafson , Marius Muench , Giovanni Vigna , Christopher Kruegel , Thorsten Holz , and Ali Abbasi . 2022 . Fuzzware: Using Precise MMIO Modeling for Effective Firmware Fuzzing. 31st USENIX Security Symposium (USENIX Security 22) , Aug., https:\/\/www.usenix.org\/conference\/usenixsecurity22\/presentation\/scharnowski Tobias Scharnowski, Nils Bars, Moritz Schloegel, Eric Gustafson, Marius Muench, Giovanni Vigna, Christopher Kruegel, Thorsten Holz, and Ali Abbasi. 2022. Fuzzware: Using Precise MMIO Modeling for Effective Firmware Fuzzing. 31st USENIX Security Symposium (USENIX Security 22), Aug., https:\/\/www.usenix.org\/conference\/usenixsecurity22\/presentation\/scharnowski"},{"key":"e_1_3_2_1_47_1","unstructured":"Segger. [n. d.]. Segger Debug & Trace Probes. https:\/\/www.segger.com\/products\/debug-trace-probes\/ Accessed: 2022-11-22. Segger. [n. d.]. Segger Debug & Trace Probes. https:\/\/www.segger.com\/products\/debug-trace-probes\/ Accessed: 2022-11-22."},{"key":"e_1_3_2_1_48_1","unstructured":"Sergei Skorobogatov. 2011. Fault attacks on secure chips. Design and Security of Cryptographic Algorithms and Devices. Sergei Skorobogatov. 2011. Fault attacks on secure chips. Design and Security of Cryptographic Algorithms and Devices."},{"key":"e_1_3_2_1_49_1","unstructured":"STMicroelectronics. [n. d.]. STLINK-V3 modular in-circuit debugger and programmer for STM32\/STM8. https:\/\/www.st.com\/en\/development-tools\/stlink-v3set.html Accessed: 2023-02-216. STMicroelectronics. [n. d.]. STLINK-V3 modular in-circuit debugger and programmer for STM32\/STM8. https:\/\/www.st.com\/en\/development-tools\/stlink-v3set.html Accessed: 2023-02-216."},{"key":"e_1_3_2_1_50_1","unstructured":"STMicroelectronics. 2020. B-L4S5I-IOT01A Discovery kit for IoT. https:\/\/www.st.com\/en\/evaluation-tools\/b-l4s5i-iot01a.html STMicroelectronics. 2020. B-L4S5I-IOT01A Discovery kit for IoT. https:\/\/www.st.com\/en\/evaluation-tools\/b-l4s5i-iot01a.html"},{"key":"e_1_3_2_1_51_1","unstructured":"STMicroelectronics. 2020. STM32 USB Host Library. https:\/\/github.com\/STMicroelectronics\/STM32CubeL4\/tree\/v1.17.1\/Middlewares\/ST\/STM32_USB_Host_Library STMicroelectronics. 2020. STM32 USB Host Library. https:\/\/github.com\/STMicroelectronics\/STM32CubeL4\/tree\/v1.17.1\/Middlewares\/ST\/STM32_USB_Host_Library"},{"key":"e_1_3_2_1_52_1","unstructured":"STMicroelectronics. 2021. STM32 USB MSC Standalone. https:\/\/github.com\/STMicroelectronics\/STM32CubeL4\/tree\/v1.17.1\/Projects\/B-L475E-IOT01A\/Applications\/USB_Host\/MSC_Standalone STMicroelectronics. 2021. STM32 USB MSC Standalone. https:\/\/github.com\/STMicroelectronics\/STM32CubeL4\/tree\/v1.17.1\/Projects\/B-L475E-IOT01A\/Applications\/USB_Host\/MSC_Standalone"},{"key":"e_1_3_2_1_53_1","unstructured":"STMicroelectronics. 2022. Cortex-M4 Fault Handler. https:\/\/github.com\/STMicroelectronics\/STM32CubeF4\/blob\/4aba24d78fef03d797a82b258f37dbc84728bbb5\/Projects\/STM32F411RE-Nucleo\/Examples_LL\/SPI\/SPI_OneBoard_HalfDuplex_DMA\/Src\/stm32f4xx_it.c##L59 STMicroelectronics. 2022. Cortex-M4 Fault Handler. https:\/\/github.com\/STMicroelectronics\/STM32CubeF4\/blob\/4aba24d78fef03d797a82b258f37dbc84728bbb5\/Projects\/STM32F411RE-Nucleo\/Examples_LL\/SPI\/SPI_OneBoard_HalfDuplex_DMA\/Src\/stm32f4xx_it.c##L59"},{"key":"e_1_3_2_1_54_1","volume-title":"On-Chip Instrumentation","author":"Stollon Neal","unstructured":"Neal Stollon . 2011. ARM ETM . In On-Chip Instrumentation . Springer , 213\u2013218. Neal Stollon. 2011. ARM ETM. In On-Chip Instrumentation. Springer, 213\u2013218."},{"key":"e_1_3_2_1_55_1","unstructured":"Texas Instruments. 2013. MSP430F5529 USB LaunchPad development kit. https:\/\/www.ti.com\/tool\/MSP-EXP430F5529LP Texas Instruments. 2013. MSP430F5529 USB LaunchPad development kit. https:\/\/www.ti.com\/tool\/MSP-EXP430F5529LP"},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1145\/566171.566186"},{"key":"e_1_3_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1109\/MDT.2008.66"},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1145\/3423167"},{"key":"e_1_3_2_1_59_1","doi-asserted-by":"publisher","DOI":"10.1145\/3538644"},{"key":"e_1_3_2_1_60_1","volume-title":"USENIX Security Symposium. 2007\u20132024","author":"Zhou Wei","year":"2021","unstructured":"Wei Zhou , Le Guan , Peng Liu , and Yuqing Zhang . 2021 . Automatic firmware emulation through invalidity-guided knowledge inference . In USENIX Security Symposium. 2007\u20132024 . Wei Zhou, Le Guan, Peng Liu, and Yuqing Zhang. 2021. Automatic firmware emulation through invalidity-guided knowledge inference. In USENIX Security Symposium. 2007\u20132024."}],"event":{"name":"ISSTA '23: 32nd ACM SIGSOFT International Symposium on Software Testing and Analysis","location":"Seattle WA USA","acronym":"ISSTA '23","sponsor":["SIGSOFT ACM Special Interest Group on Software Engineering","AITO"]},"container-title":["Proceedings of the 32nd ACM SIGSOFT International Symposium on Software Testing and Analysis"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3597926.3598115","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3597926.3598115","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T17:48:42Z","timestamp":1750182522000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3597926.3598115"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,7,12]]},"references-count":60,"alternative-id":["10.1145\/3597926.3598115","10.1145\/3597926"],"URL":"https:\/\/doi.org\/10.1145\/3597926.3598115","relation":{},"subject":[],"published":{"date-parts":[[2023,7,12]]},"assertion":[{"value":"2023-07-13","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}