Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
serjd
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
CVE-2023-21971 in OpenJDK's MySQL Connector: RCE and Unauthorized DB Access
(code-intelligence.com)
4 points
by
serjd
3y ago
|
1 comments
2.
▲
Google urges open source community to fuzz test code
(theregister.com)
5 points
by
serjd
4y ago
|
0 comments
3.
▲
CVE-2022-41853: Potential Remote Code Execution Vulnerability in Hsqldb
(code-intelligence.com)
2 points
by
serjd
4y ago
|
0 comments
4.
▲
Improvements for Go fuzzing in version 1.19
(code-intelligence.com)
6 points
by
serjd
4y ago
|
1 comments
5.
▲
Finding RCEs as in Log4j with fuzz testing
(security.googleblog.com)
5 points
by
serjd
5y ago
|
0 comments
6.
▲
by
serjd
6y ago
One of the organizers here: we're going to open-source further parts of Jazzer making it possible to detect OWASP issues like SQL injections...
7.
▲
by
serjd
6y ago
One of the speakers here: we also are going to open-source further parts of Jazzer making it possible to detect OWASP issues.
8.
▲
by
serjd
6y ago
We use our internal grammar generator similar to libprotobuf mutator. For the OSS solution, we recommend to use libprotobuf mutator though. The reason to abstract this is that we don't want to write the grammars for a single programmin
9.
▲
by
serjd
6y ago
In pitest mutations are seeded into your code, then your tests are run. The assumption is: If your unit test don't fail after changed code, it may indicate an issue with the test suite. In fuzz testing, the mutations are seeded into th
10.
▲
by
serjd
6y ago
We are aware of JQF and the jUnit integration is the best part there. We opted to taking the "Fuzzed Data Provider" approach to be more compatible to the approach in C/C++, Go and Python...
11.
▲
by
serjd
6y ago
Maybe a bit biased opinion here, but you could start with this blog post, and see whether you go more into C/C++ fuzzing or web fuzzing from there: https://blog.code-intelligence.com/the-magic-behind-feedback... https
12.
▲
Jazzer – Modern fuzz testing for the JVM (open-sourced)
(github.com)
13 points
by
serjd
6y ago
|
5 comments
13.
▲
Fuzzing Is Teamwork No More Fuzzing Ninja-Style
(blog.code-intelligence.com)
8 points
by
serjd
6y ago
|
0 comments
14.
▲
Five Uncomfortable Truths about Automotive Cybersecurity
(blog.code-intelligence.com)
3 points
by
serjd
6y ago
|
0 comments
15.
▲
FuzzCon Europe 2020 Recordings Online
(youtube.com)
10 points
by
serjd
6y ago
|
0 comments
16.
▲
by
serjd
6y ago
> We reported the issue to Microsoft. They did not consider it a vulnerability, but fixed it Seems like Microsoft doesn't like to pay for a bug bounty
17.
▲
FuzzCon – European Online Conference About Fuzzing
(fuzzcon.eu)
49 points
by
serjd
6y ago
|
12 comments