mailing list archives
Re: Does Fuzzing really work?
From: Martin Vuagnoux <dailydave () vuagnoux com>
Date: Thu, 28 Sep 2006 13:48:54 +0200
On Wednesday 27 September 2006 17:45, Ian Melven wrote:
There's a lot of links to fuzzing papers, tools, and articles here.
There is another tool and another paper at
http://autodafe.sourceforge.net (auto-ads :-)) The version 0.2 is
imminent with automatic detection of format string and heap overflow
under Linux. We are working on Windows version of the tracer based on
And for Jared who loves Macromedia Flash presentation, :-) there is the
Although Autodafe needs to know the protocol, it uses dissector from
wireshark/ethereal to convert it automatically, lot of time saved...
There is a old but efficient project called "Security Bug Catcher" which
is based on the state of a program. An implementation for FTP, has been
http://lasecwww.epfl.ch/~oechslin/projects/bugcatcher/). It has been
created under the supervision of Philippe Oechslin (yes, the rainbow
Dailydave mailing list
Dailydave () lists immunitysec com
Re: Does Fuzzing really work? Jared DeMott (Sep 25)
Re: Does Fuzzing really work? felix-dailydave (Sep 25)
Re: Does Fuzzing really work? Pusscat (Sep 26)
Re: Does Fuzzing really work? Disco Jonny (Sep 27)