To go further
BINSEC is a toolset to assist and improve software security at the binary level. We can leverage its core symbolic execution engine to discover flaws and extend it via a plugin mechanism to design new analyses.
This tutorial presents some extensions packaged within the BINSEC distribution.
Constant time
Analyse resistance to timing attacks.
Secret erasure
Check if memory is erased properly.
Fault injection
Evaluate the resistance of a program to fault injection.