Aug 2026· ACM Computing Surveys· Vol 58, pp. 1 - 35· 0 citations· 174 references
TL;DR
This article describes and categorize embedded systems, highlights the challenges posed by embedded systems for taint analysis, examine state-of-the-art techniques, and categorize dozens of tools in this field.
Abstract
Embedded systems are plagued by various security vulnerabilities that can lead to severe attacks. Therefore, it is crucial to detect and mitigate these vulnerabilities quickly and accurately. In this article, we survey existing research on vulnerability detection in embedded systems, with taint analysis as the central perspective. Specifically, we describe and categorize embedded systems, highlight the challenges posed by embedded systems for taint analysis, examine state-of-the-art techniques, and categorize dozens of tools in this field. Our goal is to provide stakeholders with a better understanding of potential solutions to enhance the security and reliability of embedded systems. Finally, we predict and discuss some future directions for taint analysis in embedded systems.
ReDoS vulnerabilities are a type of denial of service software weakness that occurs when a regex is used to validate user-supplied input. In some cases, the regex matching process can take exponential time, leading to a denial of service. In this study, we examine and compare the effectiveness of five publicly-availabl...
N'Zolieh Ismaël Mahassadi, Raphaël Khoury, J. Vallé et al.· 0 citations
The increasing integration of large language models (LLMs) into systems introduces new attack surfaces that extend beyond traditional software vulnerabilities. While LLMs are commonly protected by prompt-level security mechanisms, recent researches show that these controls can be bypassed through carefully crafted inpu...
Tamás Girászi, Natália Papp, Norbert Oláh et al.· Proceedings of the 13th Inte...· 0 citations
Currently, the two most rapidly developing fields in IT are Cybersecurity and Artificial Intelligence. Both of these areas intersect significantly—advancements in AI contribute to the growth of the security sector. This is crucial because cybercriminals are also advancing, devising new methods to cause harm, such as da...
Andrzej Mycek, Mirosław Roszkowski· Journal of Automation, Mobil...· 0 citations
A multi-strategy vulnerability analysis methodology is presented, combining simulation-based verification, formal verification, lint analysis, Large Language Model-assisted bug detection, and coverage-guided hybrid fuzzing to derive practical lessons for pre-silicon security verification.
Sudipta Paria, Aritra Dasgupta, Raghul Saravanan et al.· 0 citations
Modern processors leverage advanced microarchitectural optimizations for performance and energy efficiency, yet these improvements also introduce both functional and non-functional security flaws. To address these threats, hardware fuzzing and hybrid verification frameworks have emerged as promising approaches to impro...
Hao-Dong Sun, Ji-Liang Zhang· International Test Conferenc...· 0 citations
In times of growing global tensions, attacks on ICT infrastructure are becoming increasingly common. The field of IT systems security is becoming even more important. Various types of network vulnerability testing tools allow for the examination and improvement of the security of such systems. This article aims to comp...
Mateusz Zdunek· Journal of Computer Sciences...· 0 citations
We use cookies to run the site and, with your consent, for analytics and to show ads.
See our Cookie Policy.