[1]Lionel S. Internet of things (IoT)—Statistics & facts[EBOL]. [20230131]. https:www.statista.comtopics2637internetofthings[2]Bojan J. Internet of things statistics for 2022—Taking things apart[EBOL]. [20230131]. https:dataprot.netstatisticsiotstatistics.[3]Alex H. IoT Security: 5 cyberattacks caused by IoT security vulnerabilities[EBOL]. [20230131]. https:www.cmalliance.comcybersecurityblogiotsecurity5cyberattackscausedbyiotsecurityvulnerabilities[4]Qin F, Wang C, Li Z, et al. Lift: A lowoverhead practical information flow tracking system for detecting security attacks[C] Proc of the 39th Annual IEEEPACM Int Symp on Microarchitecture (MICRO’06). Piscataway, NJ: IEEE, 2006: 135148[5]Stephens N, Grosen J, Salls C, et al. Driller: Augmenting fuzzing through elective symbolic execution[C] Proc of Network and Distributed System Security Symposium. Rosten, VA, USA: Internet Society, 2016: 116[6]Zhu D Y, Jung J, Song D, et al. TaintEraser: Protecting sensitive data leaks using applicationlevel taint tracking[J]. ACM SIGOPS Operating Systems Review, 2011, 45(1):142154[7]Shoshitaishvili Y, Wang R, Hauser C, et al. Firmaliceautomatic detection of authentication bypass vulnerabilities in binary firmware[C] Proc of Network and Distributed System Security Symposium. Rosten, VA, USA: Internet Society, 2015: 1.18.1[8]李明琪, 张磊, 杨哲慜. 面向智能路由器远程管理应用的漏洞检测工具[J]. 计算机应用与软件, 2020, 37(7): 266274[9]Cheng K, Li Q, Wang L, et al. DTaint: Detecting the taintstyle vulnerability in embedded device firmware[C] Proc of the 48th Annual IEEEPIFIP Int Conf on Dependable Systems and Networks (DSN). Piscataway, NJ: IEEE, 2018: 430441[10]唐枭. 基于动态污点分析的反馈式模糊测试改进方法[J]. 信息安全研究, 2019, 5(2): 145151[11]Chen L, Wang Y, Cai Q, et al. Sharing more and checking less: Leveraging common input keywords to detect bugs in embedded systems[C] Proc of USENIX Security Symposium. Berkeley, CA: USENIX Association, 2021[12]Zhang Y, Huo W, Jian K, et al. SRFuzzer: An automatic fuzzing ramework for physical SOHO router devices to discover multitype vulnerabilities[C] Proc of the 35th Annual Computer Security Applications Conf. New York: ACM, 2019: 544556[13]田里, 王晋. 面向工业物联网的协议漏洞检测技术研究[J]. 信息技术与标准化, 2023 (5): 5358[14]Pereyda J. Boofuzz [CPOL]. [20230131]. https:github.comjtpereydaBoofuzz[15]Li X, Pan X, Sun Y. PSFuzz: Efficient graybox firmware fuzzing based on protocol state[J]. Journal on Artificial Intelligence, 2021, 3(1): 2131[16]Costin A, Zaddach J, Francillon A, et al. A largescale analysis of the security of embedded firmwares[C] Proc of the 23rd USENIX Security Symposium. Berkeley, CA: USENIX Association, 2014: 95110[17]Zhang H, Lu K, Zhou X, et al. SIoTFuzzer: Fuzzing Web interface in IoT firmware via stateful message generation[J]. Applied Sciences, 2021, 11(7): 31203138