swMATH ID: 9152
Software Authors: Fang Yu, Muath Alkhalaf, Tevfik Bultan
Description: Stranger: An Automata-Based String Analysis Tool for PHP. Stranger is an automata-based string analysis tool for finding and eliminating string-related security vulnerabilities in PHP applications. Stranger uses symbolic forward and backward reachability analyses to compute the possible values that the string expressions can take during program execution. Stranger can automatically (1) prove that an application is free from specified attacks or (2) generate vulnerability signatures that characterize all malicious inputs that can be used to generate attacks.
Homepage: http://link.springer.com/chapter/10.1007/978-3-642-12002-2_13
Related Software: HAMPI; z3; Z3str3; Norn; S3; CVC4; Z3str2; Z3-str; PASS; StringFuzz; GitHub; Saner; StrSolve; JST; Pex; MONA; SMT-LIB; WAPTEC; DART; Gecode
Cited in: 18 Publications

Citations by Year