LibFuzzer

LibFuzzer

LLVM Project
+
+

Related Products

  • MASV
    80 Ratings
    Visit Website
  • Wiz
    1,446 Ratings
    Visit Website
  • Air
    845 Ratings
    Visit Website
  • Dragonfly
    16 Ratings
    Visit Website
  • Cloudbrink
    28 Ratings
    Visit Website
  • Price2Spy
    229 Ratings
    Visit Website
  • CirrusPrint
    2 Ratings
    Visit Website
  • PDFCreator
    536 Ratings
    Visit Website
  • NeuBird
    2 Ratings
    Visit Website
  • Everstage
    3,550 Ratings
    Visit Website

About

Fuzzing is a powerful strategy to find bugs in software. The idea is quite simple, which is to generate a large number of randomly malformed inputs for the software to parse and see what happens. If the program crashes then something is likely wrong. While fuzzing is a well-known strategy, it is surprisingly easy to find bugs, often with security implications, in widely used software. Memory access errors are the errors most likely to be exposed when fuzzing software that is written in C/C++. While they differ in the details, the core problem is often the same, the software reads or writes to the wrong memory locations. A modern Linux or BSD system ships a large number of basic tools that do some kind of file displaying and parsing. In their current state, most of these tools are not suitable for untrusted inputs. On the other hand, we have powerful tools these days that allow us to find and analyze these bugs.

About

LibFuzzer is an in-process, coverage-guided, evolutionary fuzzing engine. LibFuzzer is linked with the library under test, and feeds fuzzed inputs to the library via a specific fuzzing entry point (or target function); the fuzzer then tracks which areas of the code are reached, and generates mutations on the corpus of input data in order to maximize the code coverage. The code coverage information for libFuzzer is provided by LLVM’s SanitizerCoverage instrumentation. LibFuzzer is still fully supported in that important bugs will get fixed. The first step in using libFuzzer on a library is to implement a fuzz target, a function that accepts an array of bytes and does something interesting with these bytes using the API under test. Note that this fuzz target does not depend on libFuzzer in any way so it is possible and even desirable to use it with other fuzzing engines like AFL and/or Radamsa.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Developers and anyone in need of a tool to improve the security of their software applications

Audience

Users requiring a fuzzing engine to analyze their code and applications

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

Free
Free Version
Free Trial

Pricing

Free
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Fuzzing Project
fuzzing-project.org

Company Information

LLVM Project
Founded: 2003
llvm.org/docs/LibFuzzer.html

Alternatives

Alternatives

afl-unicorn

afl-unicorn

Battelle
go-fuzz

go-fuzz

dvyukov
Atheris

Atheris

Google
ClusterFuzz

ClusterFuzz

Google
Jazzer

Jazzer

Code Intelligence
Honggfuzz

Honggfuzz

Google

Categories

Categories

Integrations

C
C++
Atheris
ClusterFuzz
Fuzzbuzz
Google ClusterFuzz
Jazzer

Integrations

C
C++
Atheris
ClusterFuzz
Fuzzbuzz
Google ClusterFuzz
Jazzer
Claim Fuzzing Project and update features and information
Claim Fuzzing Project and update features and information
Claim LibFuzzer and update features and information
Claim LibFuzzer and update features and information