#Eko2020 Workshops | Dhiraj Mishra: Introduction to fuzzing

preview_player
Показать описание
Fuzzing techniques enable the detection of vulnerabilities such as buffer overflows, integer overflows, format string vulnerabilities, use after free. This workshop provides a detailed overview about all parts to a successful fuzzing and why it’s needed, understanding various fuzzers and setting up the environment.

We start with AFL, understating the installation part. We'll take a quick look at some AFL key components: process timing, stages, findings, yields, path geometry and stability. After that we move ahead to smart fuzzing, where we will integrate ASAN with AFL, but before that we will give a brief understanding about ASAN and MSAN and how they are used to detect the runtime bugs during the compilation of a binary.

Finally we will provide small exercises to gets hands-on. We will quickly wrap-up our workshop by discussing how to leverage this knowledge against bug bounty programs.

#ekoparty #eko16 #pwndemic
Рекомендации по теме
join shbcf.ru