Fuzzing with radamsa - Short

preview_player
Показать описание
Radamsa is a test case generator for robustness testing, a.k.a. a fuzzer. And it does it super well. Perfect for rapid prototyping.

-=[ 🔴 Stuff I use ]=-

-=[ ❤️ Support ]=-

-=[ 🐕 Social ]=-

-=[ 📄 P.S. ]=-

All links with "*" are affiliate links.
LiveOverflow / Security Flag GmbH is part of the Amazon Affiliate Partner Programm.
Рекомендации по теме
Комментарии
Автор

I can't believe that I have to say this... But this is not an ad. I think it's just a super useful and not well known tool. It's open source, it's free, there are no commercial interest whatsoever. I'm excited about it and think it deserves to be shared, and at the same time I was able to showcase what basic fuzzing is.

LiveOverflow
Автор

For april fools you should change your pfp to shrek and rename your channel live ogreflow

rage
Автор

Tool reviews like this are actually pretty helpful and cool, keep doing this kind of stuff please!

snador
Автор

Always struggled getting good data for input test cases, so this will be really helpful! :)

TheSweMaster
Автор

I can see the potential, really smart program!

newgothwhosdis
Автор

The best fuzzer I have ever used is AFL. Very powerful and has tons of features, but to get started I think this radamsa is a good idea. AFL can get really complicated.

AlboCoder
Автор

Have you met John the Rippers cousin? radamsa the fuzzer? lolcat

dgn
Автор

Perhaps I am weird, but I don't want to run a fuzzer multiple times like this.

SourceCodeDeleted
Автор

How would you recommend recording and analysing relevant crashes with this?

jacobgreenberg
Автор

inb4 you end up with ice9.exe (person of interest reference)

TheGrimravager
Автор

Any way to fuzz a shared-lib via radamsa? Like, test all the function without needing to create a separate binary to test.

UsmanAbdulHalim
Автор

+LiveOverflow If you'll ever land/end up in Poland -> I want to have a beer with You. I'm watching your videos week to week (together with Gynvael's channels). Thank you for everything! Radamsa looks so interesting!

jareksmiejczak
Автор

Added to favorites so I could do this when I get more experience ;)
Maybe I'll revisit this video in a few years

MrKristian
Автор

could you please tell me what software do you use for your videos?

mossy
Автор

how have i never heard of this amazing tool? :D

justanormalperson
Автор

Does it work for Web service fuzzing or just software ?

kryptikmind
Автор

well you said one thing at the and: "if you have an xml parser this is really good test input.." . but what you actually want to say is: if you are writing an xml parser on your own, that is really good test input. if you use one of the main xml parsers, the program behind that parser will probably never crash, because radamsa just generates non-xml that will be ignored by the xml parser.

Desam
Автор

pipe radamsa into a serial port = fuzzing some embedded firmware. Compromises made for the limited resources can introduces bugs.

hikaru-live
Автор

sir how did you learn so much of things. Is you learn from your college or somewhere else sir please tell me.

rohitux
Автор

T󠁮hanks, nice videnks, nice videnks, nice videnks, nice vide%do!

orelg