A Gentle Introduction to Fuzzing for Developers
anaaktge
Fuzzing is a popular automated bug finding technique. Frequently Vulnerability Researchers' weapon of choice, it can be confusing and frustrating for developers to understand fuzzing output and adapt fuzzing as a tool for their needs. In this talk, we’ll discuss what fuzzing is (and what it isn’t), its strengths and weaknesses, how to distinguish different fuzzers, who’s using fuzzers for what purposes, what fuzzers suit the needs of each group, how to pick the fuzzer for your needs, and how fuzzing might fit into a devops pipeline. There will be an optional fuzzing lab based on docker. Those interested in the lab should have a GCP account ready for about ~30 minutes.
- Date:
- 2023 November 4 - 11:30
- Duration:
- 50 min
- Room:
- Room 2
- Conference:
- SeaGL 2023
- Language:
- Track:
- Security and Privacy
- Difficulty:
- Introductory
- Advanced jq: awk for JSON
- Start Time:
- 2023 November 4 11:30
- Room:
- Room 3
- Diagrams as Code
- Start Time:
- 2023 November 4 11:30
- Room:
- Room 4
- They told me I couldn't game on Linux, so I started a game hosting company (on Linux)
- Start Time:
- 2023 November 4 11:30
- Room:
- Room 1
- Fortify Your DevOps Castle: Security Considerations and Best Practices for Open-Source Infrastructure
- Start Time:
- 2023 November 4 12:00
- Room:
- Room 3
- Beyond Trusting FOSS
- Start Time:
- 2023 November 4 12:00
- Room:
- Room 4