Luis Gustavo Araujo Rodriguez;Daniel Macêdo Batista
{"title":"Resource-Intensive Fuzzing for MQTT Brokers: State of the Art, Performance Evaluation, and Open Issues","authors":"Luis Gustavo Araujo Rodriguez;Daniel Macêdo Batista","doi":"10.1109/LNET.2023.3263556","DOIUrl":null,"url":null,"abstract":"Pub/sub messaging is a promising design pattern that relies on a centralized component called the broker, which routes messages to different devices. Due to its prominent role, the broker must be capable of providing high quality services under heavy workload. In this letter, we evaluate the resource consumption of state-of-the-art fuzzing frameworks, thereby understanding the degree to which brokers are tested before deployment. Our results attest that only one framework shows the most promise for memory-intensive testing, outperforming its counterparts by more than 20%. We conclude this letter by highlighting shortcomings that prevent existing frameworks from consuming considerable system resources.","PeriodicalId":100628,"journal":{"name":"IEEE Networking Letters","volume":"5 2","pages":"100-104"},"PeriodicalIF":0.0000,"publicationDate":"2023-03-31","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"IEEE Networking Letters","FirstCategoryId":"1085","ListUrlMain":"https://ieeexplore.ieee.org/document/10089788/","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
Pub/sub messaging is a promising design pattern that relies on a centralized component called the broker, which routes messages to different devices. Due to its prominent role, the broker must be capable of providing high quality services under heavy workload. In this letter, we evaluate the resource consumption of state-of-the-art fuzzing frameworks, thereby understanding the degree to which brokers are tested before deployment. Our results attest that only one framework shows the most promise for memory-intensive testing, outperforming its counterparts by more than 20%. We conclude this letter by highlighting shortcomings that prevent existing frameworks from consuming considerable system resources.