Skip to content
STIMSMITH

Processor Fuzzing

Technique
First seen 6/11/2026
Last seen 6/13/2026
Evidence 9 chunks

NEIGHBORHOOD

6 nodes · 5 edges
graph · Processor Fuzzing · depth=1

RELATIONSHIPS

8 connections
Coverage-guided Fuzzing uses → 90% 1e
Processor fuzzing in this work employs coverage-guided fuzzing.
Register-Transfer Level (RTL) uses → 90% 1e
Processor fuzzing targets and uses RTL designs as the system under test.
Functional Verification uses → 90% 1e
Processor fuzzing aims to improve functional verification coverage.
Register-Transfer Level uses → 95% 1e
Processor fuzzing operates at the Register Transfer Level for detecting vulnerabilities.
Mux Toggle Coverage uses → 85% 1e
Mux toggle coverage is one of the coverage metrics used by existing processor fuzzers.
Control Register Coverage uses → 85% 1e
Control register coverage is one of the coverage metrics used by existing processor fuzzers.
Hardware Behavior Coverage uses → 85% 1e
Hardware behavior coverage is one of the coverage metrics used by existing processor fuzzers.
Formal Verification ← compares with 85% 1e
The paper compares formal verification and processor fuzzing as methods for RTL transient execution vulnerability detection.