Lune

INFOCOM2026顶会

An LLM-Guided Fuzzing of Proprietary Industrial Communication Protocols with Context Knowledge

Tianci Pan, Huan Qian, Yaowen Zheng, Haining Wang, Peng Zhang, Jiaxing Cheng, Ge Chu, Ke Li, Ming Zhou

2026年份

摘要

Existing fuzzing tools struggle to analyze proprietary Industrial Communication Protocols (ICPs) due to the lack of detailed protocol specifications. Consequently, they often rely on manual analysis or coarse-grained black-box approaches, which offer limited insight into protocol field semantics. This ultimately restricts both the coverage and depth of the testing process. To address these limitations, we propose a novel fuzzing framework called ICProFuzz, which leverages Large Language Models (LLMs) to understand proprietary ICPs. ICProFuzz utilizes LLMs to deeply analyze captured communication messages and available partial protocol descriptions. This enables the automated extraction of field semantics, length constraints, and inter-field dependencies. Utilizing the inferred field types and syntactic formats, we design a suite of advanced mutation strategies, including boundary value injection, format-preserving assignment, and protocol-aware keyword insertion. Finally, the generated test cases are fed into the fuzzing engine, where both the semantic parsing and mutation strategies are dynamically adjusted based on test coverage and anomaly feedback. We conducted extensive evaluations using three widely used proprietary ICPs: S7comm, UMAS, and CIP. The experimental results show that ICProFuzz outperforms traditional baseline fuzzers in vulnerability identification, path coverage, and branch coverage. Moreover, ICProFuzz identified 14 vulnerabilities across six real devices, including two zero-day vulnerabilities.

问问这篇 Paper

问问你的智能体。

Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。

可以从这些问题问起

智能体调用

Lunesearch_papers

在 Lune 里问

免费开始,无需绑卡

相关 Paper

黄昏的海面,两侧是细线勾勒的悬崖