Honggfuzz

Honggfuzz

Google
+
+

Related Products

  • cside
    23 Ratings
    Visit Website
  • A10 Defend Threat Control
    32 Ratings
    Visit Website
  • ManageEngine ADManager Plus
    587 Ratings
    Visit Website
  • Chainguard
    46 Ratings
    Visit Website
  • Cerberus FTP Server
    159 Ratings
    Visit Website
  • EasyDMARC
    171 Ratings
    Visit Website
  • NINJIO
    411 Ratings
    Visit Website
  • ManageEngine OpManager
    1,577 Ratings
    Visit Website
  • Boozang
    15 Ratings
    Visit Website
  • QuantaStor
    6 Ratings
    Visit Website

About

FuzzDB was created to increase the likelihood of finding application security vulnerabilities through dynamic application security testing. It's the first and most comprehensive open dictionary of fault injection patterns, predictable resource locations, and regex for matching server responses. FuzzDB contains comprehensive lists of attack payload primitives for fault injection testing. These patterns, categorized by the attack and where appropriate platform type, are known to cause issues like OS command injection, directory listings, directory traversals, source exposure, file upload bypass, authentication bypass, XSS, HTTP header crlf injections, SQL injection, NoSQL injection, and more. For example, FuzzDB catalogs 56 patterns that can potentially be interpreted as a null byte and contains lists of commonly used methods and name-value pairs that trigger debug modes.

About

Honggfuzz is a security-oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW-based). It’s multi-process and multi-threaded, there’s no need to run multiple copies of your fuzzer, as Honggfuzz can unlock the potential of all your available CPU cores with a single running instance. The file corpus is automatically shared and improved between all fuzzed processes. It’s blazingly fast when the persistent fuzzing mode is used. A simple/empty LLVMFuzzerTestOneInput function can be tested with up to 1mo iteration per second on a relatively modern CPU. Has a solid track record of uncovered security bugs, the only (to date) vulnerability in OpenSSL with the critical score mark was discovered by Honggfuzz. As opposed to other fuzzers, it will discover and report hijacked/ignored signals from crashes (intercepted and potentially hidden by a fuzzed program).

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Anyone requiring a security scanner solution to test their application protocols

Audience

Anyone requiring a solution to detect coding errors and security vulnerabilities

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

Free
Free Version
Free Trial

Pricing

Free
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

FuzzDB
github.com/fuzzdb-project/fuzzdb

Company Information

Google
United States
github.com/google/honggfuzz

Alternatives

Alternatives

LibFuzzer

LibFuzzer

LLVM Project
API Fuzzer

API Fuzzer

Fuzzapi
CI Fuzz

CI Fuzz

Code Intelligence
Atheris

Atheris

Google
go-fuzz

go-fuzz

dvyukov

Categories

Categories

Integrations

BlackArch Linux
ClusterFuzz
Cygwin
FreeBSD
Google ClusterFuzz
NetBSD
NoSQL
OWASP ZAP
OpenSSL

Integrations

BlackArch Linux
ClusterFuzz
Cygwin
FreeBSD
Google ClusterFuzz
NetBSD
NoSQL
OWASP ZAP
OpenSSL
Claim FuzzDB and update features and information
Claim FuzzDB and update features and information
Claim Honggfuzz and update features and information
Claim Honggfuzz and update features and information