Federico Mena Quintero · @federicomena
1846 followers · 11124 posts · Server mstdn.mx

Are you a nerd? Would you be able to help with fuzzing librsvg?

gitlab.gnome.org/GNOME/librsvg has a bunch of tasks that I'd love for someone to explore.

#rustlang #fuzzing

Last updated 1 year ago

Kate 🏳️‍⚧️ · @0xff00bb
83 followers · 887 posts · Server fosstodon.org

instead of doing the uni work i was supposed to do i started

you gotta decide what is more fun

#fuzzing #nextcloud #apis

Last updated 1 year ago

Luke T. Shumaker · @lukeshu
28 followers · 250 posts · Server fosstodon.org

If you feed Python-Markdown the input "* * \n \n-", then it emits invalid HTML.

#bug #fuzzing

Last updated 1 year ago

Daniel Axtens · @daxtens
206 followers · 346 posts · Server ozlabs.house

In which I continue my series on tools that make my life as a working easier:

cohost.org/daxtens/post/238102

Check out grep, that one seems new to a bunch of people.
( )

#programmer #git #programming #fuzzing #debugging

Last updated 1 year ago

dkorunic · @dkorunic
51 followers · 161 posts · Server mastodon.cloud
Ryan Adamson :verified: · @weezel
117 followers · 171 posts · Server hachyderm.io

I’ve been fuzzing the Linux kernel off and on for a few days now — it’s really fun to uncover bugs! There’s an epic battle going on between the fuzzer and the os: Each had made the other crash several times in different ways.
As of now it’s all tied up!

Syzkaller: 3
Kernel: 3

#fuzzing #linux #syzkaller #hpc

Last updated 1 year ago

OpenSSF · @openssf
277 followers · 110 posts · Server social.lfx.dev

Fuzz Introspector is an open source tool that provides insights and suggestions for improvements on how software projects are being fuzzed. David Korczynski and Adam Korczynski take a look & share recent updates in our latest blog: openssf.org/blog/2023/07/20/fu

#fuzzing

Last updated 1 year ago

Bar - בר :verified_flashing: · @bararchy
103 followers · 117 posts · Server hachyderm.io

I published some research I did with Injection using Genetic Algorithms for the questions.

brightsec.com/blog/llm-prompt-

#llm #prompt #fuzzing

Last updated 1 year ago

Starry Starry Knight · @Space6host
145 followers · 2969 posts · Server freeradical.zone

#fuzzing #rocks

Last updated 1 year ago

Jay Cuthrell · @jay
103 followers · 438 posts · Server cuthrell.com
Luke T. Shumaker · @lukeshu
7 followers · 77 posts · Server fosstodon.org

I've been tooting a lot about Unicode weirdness, and the different bad ways that and respectively implement it. Also a toot about . That's because:

Current project is rewriting the gtk-doc "markdown" parser from Python to Go so that I can get @diamond's gotk4 to generate better godocs.

I put "markdown" in quotes because it's pretty dang quirky and doesn't implement things that you'd expect markdown to (_like this_ or *this*), but also has some() @special %things.

#go #python #fuzzing

Last updated 1 year ago

Luke T. Shumaker · @lukeshu
7 followers · 59 posts · Server fosstodon.org

People talk about how when doing a big refactor or rewrite, you should write a bazillion tests for the old version, and use those tests for validating the new version.

But not enough folks talk about the new version against the old version.

For real, this is the killer-app of fuzzing that no one is talking about. Like, yeah, security is great, but that's not going to get most average developers to start fuzzing.

#fuzzing

Last updated 1 year ago

Luciano Remes · @lremes
21 followers · 19 posts · Server discuss.systems

Whenever explaining my research, I always inevitably get asked "What is a Fuzzer", so I wrote a blog about it:

What is a Fuzzer?
lremes.com/posts/fuzzing/

#fuzzers #fuzzing #security #afl #systems

Last updated 1 year ago

Matt "msw" Wilson · @msw
2614 followers · 1283 posts · Server mstdn.social

Today the AWS "Find and Fix" (F2) security research team released Snapchange, a new open source project to make snapshot-based fuzzing much easier.


aws.amazon.com/blogs/opensourc

#kvm #Linux #fuzzing #linuxsecuritysummit #ossummit #OpenSource

Last updated 2 years ago

theruran 🌐🏴 · @theruran
-1 followers · 1132 posts · Server hackers.town

aaand I forgot to add @@ at the end so I wasn't actually anything! that's why we test!

#fuzzing

Last updated 2 years ago

theruran 🌐🏴 · @theruran
-1 followers · 1128 posts · Server hackers.town

I am fuzzgoat inside a shell. no crashes yet after 133k executions and 37 minutes, but it is executing "slow!" inside the american-fuzzy-lop

github.com/fuzzcorp/fuzzgoat

#guix #fuzzing

Last updated 2 years ago

NLnet Labs · @nlnetlabs
1639 followers · 556 posts · Server fosstodon.org

Another thing that @tweedegolf inspired us with is fuzzing of projects. We’ve now used this to fuzz delta construction and merging when developing ASPA support in Routinator.
github.com/NLnetLabs/routinato

#rust #rpki #opensource #rustlang #fuzzing #security #routingsecurity

Last updated 2 years ago

Matthias Schmidt · @mattication
22 followers · 43 posts · Server cloud-native.social