Sequence-Oriented DBMS Fuzzing with LEGO: A Novel Database Vulnerability Discovery Approach
The paper introduces LEGO, a sequence‑oriented DBMS fuzzing framework that leverages type‑affinity analysis to generate rich SQL statement sequences, achieving 44%‑198% higher coverage and uncovering numerous new vulnerabilities across MySQL, PostgreSQL, MariaDB, and Comdb2, as demonstrated at ICDE 2023.
