SYSTEM AND METHOD OF FUZZING PREVENTION USING INTENTIONAL RESPONSES THAT APPEAR TO BE RANDOMIZED

    公开(公告)号:EP4375859A1

    公开(公告)日:2024-05-29

    申请号:EP23210601.3

    申请日:2023-11-17

    申请人: NXP B.V.

    摘要: A system and method of responding to fuzzing including receiving a fuzzing input while in fuzzed mode, performing a perceptual hashing function using the fuzzing input to generate a perceptual hash value, selecting an action from a list of actions using the perceptual hash value, and performing the selected action in response to the fuzzing input. Parameters may be generated using the perceptual hash value for actions that use parameters. Instead of normal hashing, perceptual hashing generates the same hash value for substantially similar fuzzing inputs so that corresponding fuzzing response actions appear to be random but instead are intentional. Hardware or software version numbers may be combined with a shared secret key and hashed using a non-perceptual hashing function to further impede comparison analysis by a fuzzer. Some embodiments combine perceptual hashing with non-perceptual hashing, such as cryptographic hashing or the like.