|
Abhishek Arya
@
infernosec
California, USA
|
|
Fuzz Master - Chrome Security, OSS and Google
|
|
|
98
Tweetovi
|
92
Pratim
|
1.555
Osobe koje vas prate
|
| Tweetovi |
|
Abhishek Arya
@infernosec
|
14. sij |
|
I bet every one will write a fuzzer then, need to make the problem harder for such a fancy gift!
|
||
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
Hasnain Lakhani
@mhlakhani
|
14. pro |
|
Had a great time at the second Bay Area #fuzzing Meetup with a great set of speakers and attendees - looking forward to attending more!
Big thanks to @Dor3s @thedavidbrumley @kayseesee @d0znpp @infernosec and everyone else who helped organize pic.twitter.com/8icFVuryEa
|
||
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
Jonathan Metzman
@metzmanj
|
12. pro |
|
The video from my talk on structure-aware fuzzing at Black Hat was posted: youtube.com/watch?v=S8JvzW…
I mostly cover libprotobuf-mutator but also discuss libFuzzer custom mutators.
|
||
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
Kostya Serebryany
@kayseesee
|
12. stu |
|
Fuzzing Bay Area #2
Thursday, December 12, 2019
meetup.com/San-Francisco-…
|
||
|
|
||
|
Abhishek Arya
@infernosec
|
12. pro |
|
My fuzzing team is looking for one as well, apply soon! twitter.com/kayseesee/stat…
|
||
|
|
||
|
Abhishek Arya
@infernosec
|
11. pro |
|
Didn't I say thank developers and not OWNing them :)
|
||
|
|
||
|
Abhishek Arya
@infernosec
|
11. pro |
|
Fuzzing always scale with developers and this is a small token of appreciation for their awesome efforts! pic.twitter.com/Ep77AOf83P
|
||
|
|
||
|
Abhishek Arya
@infernosec
|
5. pro |
|
Very nice indeed! twitter.com/halbecaf/statu…
|
||
|
|
||
|
Abhishek Arya
@infernosec
|
5. pro |
|
Gotta love the creativity, still feels relevant considering the outcome from it :) Another similar name i like is Mayhem from ForAllSecure.
|
||
|
|
||
|
Abhishek Arya
@infernosec
|
5. pro |
|
#Fuzzing is like a candy, if you make it easy (aka sweet), it works and devs want more. Check out our wide range of projects here - github.com/google/oss-fuz… twitter.com/giano/status/1…
|
||
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
Chris Wysopal
@WeldPond
|
4. pro |
|
Interesting presentation on fuzzing at scale with Google’s ClusterFuzz #BHEU pic.twitter.com/wnhyEJ3G2T
|
||
|
|
||
|
Abhishek Arya
@infernosec
|
4. pro |
|
Sure, will try to catch up after your fuzzing talk tmrw. twitter.com/is_eqv/status/…
|
||
|
|
||
|
Abhishek Arya
@infernosec
|
24. stu |
|
If you are attending #BHEU, come to our talk about Fuzzing at Google Scale with ClusterFuzz (co-presenting with @halbecaf). We will share our experiences with scaling fuzzing for Chrome, 250+ OSS projects and Google products.
@BlackHatEvents
|
||
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
GitHub Security Lab
@GHSecurityLab
|
17. stu |
|
Yesterday we had our first GitHub Security Meetup, with ligthning talks by @kevin_backhouse @Nosoynadiemas @agustingianni and Abishek Arya (Google). But also with exciting discussions with security folks. Thanks to all attendees and others: stay tuned for the next one in January. twitter.com/nicowaisman/st…
|
||
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
Max Moroz
@Dor3s
|
6. stu |
|
Fuzzing Bay Area meetup #2: meetup.com/San-Francisco-…
Join us Dec 12th at Facebook's office in Menlo Park.
Send your talk proposals to fuzzing-bay-area@googlegroups.com until Nov 17th.
Format: 3 talks (20 mins each) + Q&A + networking.
See you there! #fuzzing #bayarea #meetup
|
||
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
David Brumley
@thedavidbrumley
|
8. lis |
|
Will autonomy kill CVE's? More specifically, downstream tools may be missing important @mitre CVEs because automated tools can't report them easily. I talk through the issues in my blog: csoonline.com/article/344449… #fuzzing
|
||
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
David Brumley
@thedavidbrumley
|
23. kol |
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
Dino A. Dai Zovi
@dinodaizovi
|
19. kol |
|
Continuous fuzzing found a critical remote DoS in @golang's JSON parsing *before* it was released. twitter.com/dvyukov/status…
|
||
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
Jonathan Metzman
@metzmanj
|
5. kol |
|
Attention fuzzing fanatics: On Wednesday 5PM I'm giving a BlackHat talk (blackhat.com/us-19/briefing…) on how you can use structure awareness to get *more vulnerabilities* out of coverage-guided fuzzing and cover the techniques to do it like libprotobuf-mutator
@BlackHatEvents #BHUSA pic.twitter.com/pMvr1INTEV
|
||
|
|
||
| Abhishek Arya proslijedio/la je tweet | ||
|
Google Vulnerability Reward Program (VRP)
@GoogleVRP
|
30. srp |
|
Learn how to write fuzzers for Chrome and put your vulnerability rewards on autopilot with @dor3s and @nedwilliamson: security.googleblog.com/2019/07/chrome…
|
||
|
|
||