HTTP protocol differential fuzz testing method and system based on large language model
By employing an automated approach based on a large language model, the problems of deep semantic awareness and complex field dependencies in existing HTTP differential fuzz testing are solved, enabling efficient HTTP protocol testing and vulnerability discovery.
CN122132303APending Publication Date: 2026-06-02SHANDONG UNIV
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- SHANDONG UNIV
- Filing Date
- 2026-02-04
- Publication Date
- 2026-06-02
Smart Images

Figure CN122132303A_ABST
Abstract
This invention belongs to the field of network security and software testing technology, and provides a method and system for HTTP protocol differential fuzzing testing based on a large language model. The technical solution reads and preprocesses RFC specification documents. Based on constructed prompts, it guides the large language model to extract HTTP request templates and HTTP field dependencies from the preprocessed RFC specification documents. Based on the acquired malicious payload and the extracted HTTP request template, it guides the large language model to generate initial test cases. The extracted HTTP field dependencies are used to mutate the initial test cases, and the mutated test cases are concurrently sent to multiple different HTTP servers to perform differential fuzzing and obtain differential fuzzing response results. The responses from all servers are received, and the differential fuzzing response results are analyzed in conjunction with the large language model to obtain differential response analysis results and generate new test cases. This solves the problems of low semantic quality of test cases and blind mutation strategies in traditional HTTP fuzzing.
Need to check novelty before this filing date? Find Prior Art