{"id":"https://openalex.org/W3192298756","doi":"https://doi.org/10.1186/s42400-021-00087-5","title":"ICPFuzzer: proprietary communication protocol fuzzing by using machine learning and feedback strategies","display_name":"ICPFuzzer: proprietary communication protocol fuzzing by using machine learning and feedback strategies","publication_year":2021,"publication_date":"2021-08-02","ids":{"openalex":"https://openalex.org/W3192298756","doi":"https://doi.org/10.1186/s42400-021-00087-5","mag":"3192298756"},"language":"en","primary_location":{"id":"doi:10.1186/s42400-021-00087-5","is_oa":true,"landing_page_url":"https://doi.org/10.1186/s42400-021-00087-5","pdf_url":"https://cybersecurity.springeropen.com/track/pdf/10.1186/s42400-021-00087-5","source":{"id":"https://openalex.org/S3035238565","display_name":"Cybersecurity","issn_l":"2523-3246","issn":["2523-3246"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319965","host_organization_name":"Springer Nature","host_organization_lineage":["https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Cybersecurity","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://cybersecurity.springeropen.com/track/pdf/10.1186/s42400-021-00087-5","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5058709349","display_name":"Pei-Yi Lin","orcid":null},"institutions":[{"id":"https://openalex.org/I3141939062","display_name":"Institute for Information Industry","ror":"https://ror.org/01d8kr740","country_code":"TW","type":"nonprofit","lineage":["https://openalex.org/I3141939062"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Pei-Yi Lin","raw_affiliation_strings":["Cybersecurity Technology Institute, Institute for Information Industry Taiwan, China, No. 133, Sec. 4, Minsheng E. Rd., Songshan Dist. 105, Taipei City, Taiwan, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Cybersecurity Technology Institute, Institute for Information Industry Taiwan, China, No. 133, Sec. 4, Minsheng E. Rd., Songshan Dist. 105, Taipei City, Taiwan, China","institution_ids":["https://openalex.org/I3141939062"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5033139870","display_name":"Chia\u2010Wei Tien","orcid":"https://orcid.org/0000-0002-7829-7778"},"institutions":[{"id":"https://openalex.org/I3141939062","display_name":"Institute for Information Industry","ror":"https://ror.org/01d8kr740","country_code":"TW","type":"nonprofit","lineage":["https://openalex.org/I3141939062"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Chia-Wei Tien","raw_affiliation_strings":["Cybersecurity Technology Institute, Institute for Information Industry Taiwan, China, No. 133, Sec. 4, Minsheng E. Rd., Songshan Dist. 105, Taipei City, Taiwan, China"],"raw_orcid":"https://orcid.org/0000-0002-7829-7778","affiliations":[{"raw_affiliation_string":"Cybersecurity Technology Institute, Institute for Information Industry Taiwan, China, No. 133, Sec. 4, Minsheng E. Rd., Songshan Dist. 105, Taipei City, Taiwan, China","institution_ids":["https://openalex.org/I3141939062"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5087532530","display_name":"Ting\u2010Chun Huang","orcid":null},"institutions":[{"id":"https://openalex.org/I3141939062","display_name":"Institute for Information Industry","ror":"https://ror.org/01d8kr740","country_code":"TW","type":"nonprofit","lineage":["https://openalex.org/I3141939062"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Ting-Chun Huang","raw_affiliation_strings":["Cybersecurity Technology Institute, Institute for Information Industry Taiwan, China, No. 133, Sec. 4, Minsheng E. Rd., Songshan Dist. 105, Taipei City, Taiwan, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Cybersecurity Technology Institute, Institute for Information Industry Taiwan, China, No. 133, Sec. 4, Minsheng E. Rd., Songshan Dist. 105, Taipei City, Taiwan, China","institution_ids":["https://openalex.org/I3141939062"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5081922241","display_name":"Chin\u2010Wei Tien","orcid":"https://orcid.org/0000-0002-5490-2953"},"institutions":[{"id":"https://openalex.org/I3141939062","display_name":"Institute for Information Industry","ror":"https://ror.org/01d8kr740","country_code":"TW","type":"nonprofit","lineage":["https://openalex.org/I3141939062"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Chin-Wei Tien","raw_affiliation_strings":["Cybersecurity Technology Institute, Institute for Information Industry Taiwan, China, No. 133, Sec. 4, Minsheng E. Rd., Songshan Dist. 105, Taipei City, Taiwan, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Cybersecurity Technology Institute, Institute for Information Industry Taiwan, China, No. 133, Sec. 4, Minsheng E. Rd., Songshan Dist. 105, Taipei City, Taiwan, China","institution_ids":["https://openalex.org/I3141939062"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":2.5316,"has_fulltext":true,"cited_by_count":13,"citation_normalized_percentile":{"value":0.88781381,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":98},"biblio":{"volume":"4","issue":"1","first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9984999895095825,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9980999827384949,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/fuzz-testing","display_name":"Fuzz testing","score":0.9909362196922302},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8184630870819092},{"id":"https://openalex.org/keywords/protocol","display_name":"Protocol (science)","score":0.5754421353340149},{"id":"https://openalex.org/keywords/security-testing","display_name":"Security testing","score":0.5022025108337402},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.4782746732234955},{"id":"https://openalex.org/keywords/communications-protocol","display_name":"Communications protocol","score":0.4268392324447632},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.3843388259410858},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3242291510105133},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.2600497007369995},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.23919156193733215},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.11668333411216736},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.09196263551712036}],"concepts":[{"id":"https://openalex.org/C111065885","wikidata":"https://www.wikidata.org/wiki/Q1189053","display_name":"Fuzz testing","level":3,"score":0.9909362196922302},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8184630870819092},{"id":"https://openalex.org/C2780385302","wikidata":"https://www.wikidata.org/wiki/Q367158","display_name":"Protocol (science)","level":3,"score":0.5754421353340149},{"id":"https://openalex.org/C195518309","wikidata":"https://www.wikidata.org/wiki/Q13424265","display_name":"Security testing","level":5,"score":0.5022025108337402},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.4782746732234955},{"id":"https://openalex.org/C12269588","wikidata":"https://www.wikidata.org/wiki/Q132364","display_name":"Communications protocol","level":2,"score":0.4268392324447632},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.3843388259410858},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3242291510105133},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.2600497007369995},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.23919156193733215},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.11668333411216736},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.09196263551712036},{"id":"https://openalex.org/C103377522","wikidata":"https://www.wikidata.org/wiki/Q3493999","display_name":"Security information and event management","level":4,"score":0.0},{"id":"https://openalex.org/C71924100","wikidata":"https://www.wikidata.org/wiki/Q11190","display_name":"Medicine","level":0,"score":0.0},{"id":"https://openalex.org/C204787440","wikidata":"https://www.wikidata.org/wiki/Q188504","display_name":"Alternative medicine","level":2,"score":0.0},{"id":"https://openalex.org/C184842701","wikidata":"https://www.wikidata.org/wiki/Q370563","display_name":"Cloud computing security","level":3,"score":0.0},{"id":"https://openalex.org/C142724271","wikidata":"https://www.wikidata.org/wiki/Q7208","display_name":"Pathology","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1186/s42400-021-00087-5","is_oa":true,"landing_page_url":"https://doi.org/10.1186/s42400-021-00087-5","pdf_url":"https://cybersecurity.springeropen.com/track/pdf/10.1186/s42400-021-00087-5","source":{"id":"https://openalex.org/S3035238565","display_name":"Cybersecurity","issn_l":"2523-3246","issn":["2523-3246"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319965","host_organization_name":"Springer Nature","host_organization_lineage":["https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Cybersecurity","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:aad84bee15e042d59cfd5fd53f2b2023","is_oa":true,"landing_page_url":"https://doaj.org/article/aad84bee15e042d59cfd5fd53f2b2023","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Cybersecurity, Vol 4, Iss 1, Pp 1-15 (2021)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.1186/s42400-021-00087-5","is_oa":true,"landing_page_url":"https://doi.org/10.1186/s42400-021-00087-5","pdf_url":"https://cybersecurity.springeropen.com/track/pdf/10.1186/s42400-021-00087-5","source":{"id":"https://openalex.org/S3035238565","display_name":"Cybersecurity","issn_l":"2523-3246","issn":["2523-3246"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310319965","host_organization_name":"Springer Nature","host_organization_lineage":["https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Nature"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Cybersecurity","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3192298756.pdf","grobid_xml":"https://content.openalex.org/works/W3192298756.grobid-xml"},"referenced_works_count":31,"referenced_works":["https://openalex.org/W7586523","https://openalex.org/W1466472883","https://openalex.org/W1598796236","https://openalex.org/W1619258821","https://openalex.org/W1911778649","https://openalex.org/W2064675550","https://openalex.org/W2065221212","https://openalex.org/W2074231493","https://openalex.org/W2107878631","https://openalex.org/W2297949281","https://openalex.org/W2330650066","https://openalex.org/W2427198867","https://openalex.org/W2529560583","https://openalex.org/W2546094875","https://openalex.org/W2560874070","https://openalex.org/W2583649498","https://openalex.org/W2613534458","https://openalex.org/W2759656866","https://openalex.org/W2769748476","https://openalex.org/W2783189527","https://openalex.org/W2795192879","https://openalex.org/W2806746626","https://openalex.org/W2898959386","https://openalex.org/W2899541238","https://openalex.org/W2927166905","https://openalex.org/W2950911860","https://openalex.org/W2963064278","https://openalex.org/W2979306374","https://openalex.org/W3106519623","https://openalex.org/W3191405435","https://openalex.org/W4399528728"],"related_works":["https://openalex.org/W2399088936","https://openalex.org/W4323054491","https://openalex.org/W2547256600","https://openalex.org/W4234658024","https://openalex.org/W2062583373","https://openalex.org/W114061091","https://openalex.org/W3153868358","https://openalex.org/W2980609145","https://openalex.org/W2766295568","https://openalex.org/W107788109"],"abstract_inverted_index":{"Abstract":[0],"The":[1],"fuzzing":[2,57,88,185],"test":[3,62,107,124,172],"is":[4,23,182],"able":[5],"to":[6,14,36,66,72,97,122,130],"discover":[7],"various":[8,67],"vulnerabilities":[9,196],"and":[10,29,52,104,117,151,168,194,199],"has":[11],"more":[12,132],"chances":[13],"hit":[15],"the":[16,38,41,56,74,82,99,113,119,125,141,144,149,162,171,191,207],"zero-day":[17],"targets.":[18],"And":[19],"ICS(Industrial":[20],"control":[21,202],"system)":[22],"currently":[24],"facing":[25],"huge":[26],"security":[27,31],"threats":[28],"requires":[30],"standards,":[32],"like":[33],"ISO":[34],"62443,":[35],"ensure":[37],"quality":[39,208],"of":[40,81,101,115,143,209],"device.":[42],"However,":[43],"some":[44],"industrial":[45,201],"proprietary":[46],"communication":[47],"protocols":[48],"can":[49,174,188],"be":[50],"customized":[51],"have":[53],"complicated":[54],"structures,":[55],"system":[58,89,186],"cannot":[59],"quickly":[60],"generate":[61],"data":[63,108,133,173],"that":[64,92,134,170,187,197],"adapt":[65],"protocols.":[68,83],"It":[69],"also":[70,111,212],"struggles":[71],"define":[73],"mutation":[75],"field":[76],"without":[77],"having":[78],"prior":[79],"knowledge":[80],"Therefore,":[84],"we":[85,159],"propose":[86],"a":[87,102,156,165,176,183],"named":[90],"ICPFuzzer":[91,181],"uses":[93],"LSTM(Long":[94],"short-term":[95],"memory)":[96],"learn":[98],"features":[100],"protocol":[103],"generates":[105],"mutated":[106],"automatically.":[109],"We":[110,139],"use":[112],"responses":[114],"testing":[116,128,192],"adjust":[118],"weight":[120],"strategies":[121],"further":[123],"device":[126],"under":[127],"(DUT)":[129],"find":[131],"cause":[135,175],"unusual":[136,177],"connection":[137],"status.":[138],"verified":[140],"effectiveness":[142],"approach":[145],"by":[146],"comparing":[147],"with":[148,161],"open-source":[150],"commercial":[152],"fuzzers.":[153],"Furthermore,":[154],"in":[155],"real":[157],"case,":[158],"experimented":[160],"DLMS/COSEM":[163],"for":[164],"smart":[166],"meter":[167],"found":[169],"response.":[178],"In":[179],"summary,":[180],"black-box":[184],"automatically":[189],"execute":[190],"process":[193],"reveal":[195],"interrupt":[198],"crash":[200],"communication.":[203],"Not":[204],"only":[205],"improves":[206,213],"ICS":[210],"but":[211],"safety.":[214]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":2}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
