article thumbnail

Uncovering Vulnerabilities In Open Source Libraries (CVE-2019-13499)

ForAllSecure

In recent articles, ForAllSecure has discussed how we were able to use our next-generation fuzzing solution, Mayhem, to discover previously unknown vulnerabilities in several open source projects, including Netflix DIAL reference , Das U-Boot , and more. What Quality-Assurance Measures Are in Place for This Target?

article thumbnail

Uncovering Vulnerabilities In Open Source Libraries (CVE-2019-13499)

ForAllSecure

In recent articles, ForAllSecure has discussed how we were able to use our next-generation fuzzing solution, Mayhem, to discover previously unknown vulnerabilities in several open source projects, including Netflix DIAL reference , Das U-Boot , and more. What Quality-Assurance Measures Are in Place for This Target?

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

UNCOVERING VULNERABILITIES IN OPEN SOURCE LIBRARIES

ForAllSecure

In recent articles, ForAllSecure has discussed how we were able to use our next-generation fuzzing solution, Mayhem, to discover previously unknown vulnerabilities in several open source projects, including Netflix DIAL reference , Das U-Boot , and more. What Quality-Assurance Measures Are in Place for This Target?

article thumbnail

Why Fuzzing Is Your Friend For DevSecOps

ForAllSecure

By incorporating a quality assurance technique called fuzzing into their software vulnerability testing and assurance processes to uncover coding errors and security loopholes. In 2019, Google reported finding over 20,000 vulnerabilities automatically with its in-house fuzzing toolchain. Google isn’t alone.

Linux 52
article thumbnail

Why Fuzzing Is Your Friend For DevSecOps

ForAllSecure

By incorporating a quality assurance technique called fuzzing into their software vulnerability testing and assurance processes to uncover coding errors and security loopholes. In 2019, Google reported finding over 20,000 vulnerabilities automatically with its in-house fuzzing toolchain. Google isn’t alone.

Linux 52
article thumbnail

WHY FUZZING IS YOUR FRIEND FOR DEVSECOPS

ForAllSecure

By incorporating a quality assurance technique called fuzzing into their software vulnerability testing and assurance processes to uncover coding errors and security loopholes. In 2019, Google reported finding over 20,000 vulnerabilities automatically with its in-house fuzzing toolchain. Google isn’t alone.

Linux 52
article thumbnail

The Hacker Mind Podcast: Fuzzing Hyper-V

ForAllSecure

If I'm not mistaken fuzzing actually started as a testing technique, so mostly quality assurance, but I think it evolved into being a tool for security researcher, just because it's pillock said, it is capable of identifying problems in the code, which can be leveraged into exploitation maybe. So, who would be using fuzzing today.