Presented by:

anaaktge

from Portland State University

Fuzzing is a popular automated bug finding technique. Frequently Vulnerability Researchers' weapon of choice, it can be confusing and frustrating for developers to understand fuzzing output and adapt fuzzing as a tool for their needs. In this talk, we’ll discuss what fuzzing is (and what it isn’t), its strengths and weaknesses, how to distinguish different fuzzers, who’s using fuzzers for what purposes, what fuzzers suit the needs of each group, how to pick the fuzzer for your needs, and how fuzzing might fit into a devops pipeline. There will be an optional fuzzing lab based on docker. Those interested in the lab should have a GCP account ready for about ~30 minutes.

Date:
2023 November 4 - 11:30
Duration:
50 min
Room:
Room 2
Conference:
SeaGL 2023
Language:
Track:
Security and Privacy
Difficulty:
Introductory

Happening at the same time:

  1. Advanced jq: awk for JSON
  2. Start Time:
    2023 November 4 11:30

    Room:
    Room 3

  3. Diagrams as Code
  4. Start Time:
    2023 November 4 11:30

    Room:
    Room 4

  5. They told me I couldn't game on Linux, so I started a game hosting company (on Linux)
  6. Start Time:
    2023 November 4 11:30

    Room:
    Room 1

  7. Fortify Your DevOps Castle: Security Considerations and Best Practices for Open-Source Infrastructure
  8. Start Time:
    2023 November 4 12:00

    Room:
    Room 3

  9. Beyond Trusting FOSS
  10. Start Time:
    2023 November 4 12:00

    Room:
    Room 4