Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

So, what's a "fuzzer"? =/


A fuzzer is a tool that generates malformed input to try and trigger crashes in parsers, usually with the hope of finding a bug that can be turned into a security exploit.


Parsing bugs is one category of tickled bugs, another is correctly encoded values that confuse the deeper logic layers. Eg heartbleed was the latter.





Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: