| Tweetovi |
|
Everest Munro-Zeisberger
@evsmz
|
22. pro |
|
Delet this
|
||
|
|
||
| Everest Munro-Zeisberger proslijedio/la je tweet | ||
|
Max Moroz
@Dor3s
|
26. stu |
|
We have the agenda! Check out the talks by @mhlakhani, @cestlemieux, and @metzmanj and RSVP to attend Fuzzing Bay Area meetup #2: eventbrite.com/e/fuzzing-bay-…
Dec 12th, 6:30pm, Menlo Park (thanks Facebook for hosting!).
#fuzzing #bayarea #meetup
|
||
|
|
||
| Everest Munro-Zeisberger proslijedio/la je tweet | ||
|
Max Moroz
@Dor3s
|
12. stu |
|
Reminder: if you love fuzzing and will be in the Bay Area on Dec 12th, come to our meetup!
CFP is open until Nov 17th, send your talk proposals to fuzzing-bay-area@googlegroups.com.
RSVP at meetup.com/San-Francisco-…
#fuzzing #bayarea #meetup twitter.com/Dor3s/status/1…
|
||
|
|
||
| Everest Munro-Zeisberger proslijedio/la je tweet | ||
|
Dmitry Vyukov
@dvyukov
|
8. stu |
|
Whoa! Actual memory safety exploit for #golang using data race to break safety of interface object (races are the only escape hatch for memory/type safety in Go).
You are testing your Go code with the race detector (-race), right? twitter.com/NetanelBenSimo…
|
||
|
|
||
| Everest Munro-Zeisberger proslijedio/la je tweet | ||
|
Dmitry Vyukov
@dvyukov
|
9. lis |
|
Yay fuzzing and go-fuzz!
And, yes, always fuzz even memory safe languages.
We even fuzz fuzzers written in memory safe languages! twitter.com/erchiang/statu…
|
||
|
|
||
|
Everest Munro-Zeisberger
@evsmz
|
15. kol |
|
Does this mean it's time for fuzzing? github.com/rust-fuzz/afl.…
|
||
|
|
||
|
Everest Munro-Zeisberger
@evsmz
|
14. kol |
|
We've got something in the works that solves all these problems and will be looking for early beta testers - dm me if you're interested (we'll compensate you for your time)
|
||
|
|
||
|
Everest Munro-Zeisberger
@evsmz
|
14. kol |
|
Of course, once you achieve this, better automation & bug management becomes key so you don't have an unmanageable stream of bugs to triage and deal with as a result.
|
||
|
|
||
|
Everest Munro-Zeisberger
@evsmz
|
14. kol |
|
However, it's too time-consuming for the average developer to take a large, modern, enterprise codebase and build meaningful fuzz tests, so they just don't fuzz their code. To enable developers, we need to reduce the time it takes to get a codebase into a fuzz-able state.
|
||
|
|
||
|
Everest Munro-Zeisberger
@evsmz
|
14. kol |
|
Simplicity. Fuzz tests should be written by the developers who built the code in the first place, not security engineers - they've got enough on their plates.
|
||
|
|
||
|
Everest Munro-Zeisberger
@evsmz
|
8. kol |
|
Making fuzzing easy for developers is one of the most important problems in the space right now.
fuzzbuzz.io/jobs twitter.com/fuzzbuzz/statu…
|
||
|
|
||
|
Everest Munro-Zeisberger
@evsmz
|
8. kol |
|
@kayseesee are you at BH this year?
|
||
|
|
||
| Everest Munro-Zeisberger proslijedio/la je tweet | ||
|
Andrei Serban
@ndreiserban
|
2. kol |
|
Whoever can come up with a name for our new fuzzer gets $100 Amazon credits or something
|
||
|
|
||
| Everest Munro-Zeisberger proslijedio/la je tweet | ||
|
Fuzzbuzz
@fuzzbuzz
|
18. srp |
|
We're hiring an engineer to lead development on a new Fuzzing engine that will significantly change the role fuzzing plays in modern software testing.
Come help us make fuzzing an industry standard 🚀
fuzzbuzz.io/jobs
|
||
|
|
||
| Everest Munro-Zeisberger proslijedio/la je tweet | ||
|
Shak Lakhani
@shaklakhani
|
10. srp |
|
5 RTs and this goes in my investor update pic.twitter.com/4kNVbRZG6c
|
||
|
|
||
| Everest Munro-Zeisberger proslijedio/la je tweet | ||
|
Andrei Serban
@ndreiserban
|
1. srp |
|
Congrats to the @SusaVentures team!! 🦍
They've been one of our most helpful investors, and their success goes to show that they're definitely doing something right. Super grateful to be working with them 🚀 twitter.com/SusaVentures/s…
|
||
|
|
||
|
Everest Munro-Zeisberger
@evsmz
|
19. lip |
|
What would your ideal modern, CI-integrated DAST solution look like?
|
||
|
|
||
| Everest Munro-Zeisberger proslijedio/la je tweet | ||
|
Dmitry Vyukov
@dvyukov
|
16. svi |
|
We need Go fuzzing to be first class citizen! Why?
tiny.cc/why-go-fuzz
It won't happen w/o (explicitly expressed) interest from large players.
Pls express interest and help spread the word.
@Docker @kubernetesio @digitalocean @Cloudflare @cloudfoundry don't be the next RDP!
|
||
|
|
||
|
Everest Munro-Zeisberger
@evsmz
|
16. svi |
|
Thanks for all the amazing work you, @commaok and others have done to bring go fuzzing to where it is today! This is such an important proposal
|
||
|
|
||
|
Everest Munro-Zeisberger
@evsmz
|
22. tra |
|
Thanks for catching that! Just opened DMs and I'll shoot you one.
|
||
|
|
||