Generalized method for comparative analysis of fuzz testing tools

Software security
Authors:
Abstract:

A systematic analysis of fuzzing evaluation methodologies has been conducted. A minimal yet comprehensive metric set — branch coverage, unique crash count, and time-to-first-crash — has been identified. A normalized aggregate indicator is proposed that enables post-hoc comparison of different tools without reruns.