Cost Efficient Fuzzing Techniques For Fun And Profit

No ratings

Presented at t2 2010 by

OUSPG has been searching, finding and responsibly disclosing issues in various programs, appliances and protocols for a long time. One of the simplest, and sadly still quite effective, techniques of finding issues has been to point a black-box fuzzer at a product and waiting for it to fail in an interesting way. Even the crudest fuzzers still find probably exploitable issues in many currently used programs, and more advanced techniques tend to find more of them. One of our current projects is to collect several old and new sample-based black-box fuzzing algorithms to an easy to use tool. The hope is that by making such techniques easier to use at least some vendors could start running their own tests, while others already using similar techniques could easily throw it in with their existing tools. So far the tool has at least turned out to be useful for hunting bug bounties. This presentation will discuss the currently implemented fuzzing algorithms, some of the results, experiences and lessons learned during the last year.