sulley
Our great sponsors
radamsa | sulley | |
---|---|---|
5 | 1 | |
- | 1,397 | |
- | 1.0% | |
- | 10.0 | |
- | over 3 years ago | |
Python | ||
- | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
radamsa
-
How to fuzz java code with jazzar?
Ex Radmasa
- Radamsa – test case generator for robustness testing
-
Anyone knows open source mutator support regex?
I used to use radamsa to make my own fuzzer, but it does not support regex to generate datas.
-
What Is Fuzz Testing?
At simplest and most straight forward level fuzz testing is pretty simple to get started with. Collect some input(API calls, files, etc.), pass it to fuzzer(for example radamsa[0]), throw it at program and observe...
Ofc, depending on system collecting input and sending it to system might be bit more complicated. Hardest part is often the observing and finding that an error happens.
Not that this gets you full coverage, for more complex things like protocols something custom that takes lot more effort is probably needed.
[0] https://gitlab.com/akihe/radamsa
- Radamsa: A general-purpose black-box fuzzer
sulley
-
How to fuzz java code with jazzar?
Ex ( Peach, Sulley )
What are some alternatives?
onefuzz - A self-hosted Fuzzing-As-A-Service platform
honggfuzz - Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)
beacon-fuzz - Differential Fuzzer for Ethereum 2.0
jazzer - Coverage-guided, in-process fuzzing for the JVM
winafl - A fork of AFL for fuzzing Windows binaries
doubleback - Doubleback provides round-trip parsing and printing of 64-bit double-precision floating-point numbers using the Ryu algorithm implemented in multiple programming languages. Doubleback is biased towards "human-friendly" output which round-trips consistently between binary and decimal.
American Fuzzy Lop - american fuzzy lop - a security-oriented fuzzer
cryptofuzz - Fuzzing cryptographic libraries. Magic bug printer go brrrr.
peach - Peach is a fuzzing framework which uses a DSL for building fuzzers and an observer based architecture to execute and monitor them.
nautilus - A grammar based feedback Fuzzer