Tashfia Alam, Zhenkun Yang, Bo Chen, Nicholas Armour, S. Ray
{"title":"FirVer: Concolic Testing for Systematic Validation of Firmware Binaries","authors":"Tashfia Alam, Zhenkun Yang, Bo Chen, Nicholas Armour, S. Ray","doi":"10.1109/ASP-DAC52403.2022.9712594","DOIUrl":null,"url":null,"abstract":"We present an infrastructure, FirVer, for systematic validation of firmware binaries. FirVer makes unique use of virtual prototyping and unit testing interfaces for effective comprehension of hardware-firmware. We used FirVer on several library functions of TianoCore, a full-featured UEFI-compatible boot firmware developed by Intel Corporation. FirVer achieved more than 90% in line and function coverages, and between 60% and 80% branch coverage. FirVer also enabled exploration of corner cases that exposed segmentation faults in many constituent functions.","PeriodicalId":239260,"journal":{"name":"2022 27th Asia and South Pacific Design Automation Conference (ASP-DAC)","volume":"11 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-01-17","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 27th Asia and South Pacific Design Automation Conference (ASP-DAC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ASP-DAC52403.2022.9712594","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
We present an infrastructure, FirVer, for systematic validation of firmware binaries. FirVer makes unique use of virtual prototyping and unit testing interfaces for effective comprehension of hardware-firmware. We used FirVer on several library functions of TianoCore, a full-featured UEFI-compatible boot firmware developed by Intel Corporation. FirVer achieved more than 90% in line and function coverages, and between 60% and 80% branch coverage. FirVer also enabled exploration of corner cases that exposed segmentation faults in many constituent functions.