|
Thuan Pham
@
ThuanpvNus
Australia
|
|
Automated software testing enthusiast. Working on program analysis and smart fuzzing.
|
|
|
294
Tweetovi
|
338
Pratim
|
547
Osobe koje vas prate
|
| Tweetovi |
|
Thuan Pham
@ThuanpvNus
|
8 h |
|
Great findings! I really want to play with these "toys" and fuzz them using #AFLNet twitter.com/_odisseus/stat…
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
|
Dominik
@domenuk
|
18 h |
|
Why is fuzzing not part of the development lifecycle yet? 🤔 twitter.com/dvyukov/status…
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
Marcel Böhme
@mboehme_
|
10 h |
|
.@YuvalYarom: "There is a simple mitigation: If an instruction fails, do not execute any instructions that depend on it". Thanks, Yuval, for coming down to visit us at the Monash Fuzzing Lab in Melbourne! Great to have you here. pic.twitter.com/kEtAQRMZD4
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
Andrea Fioraldi
@andreafioraldi
|
5. velj |
|
The AFL++ website is up: aflplus.plus
Very naive ATM, I'm open to suggestions.
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
Brandon Falk
@gamozolabs
|
1. velj |
|
I also uploaded the first Paper Review, on "Building Fast Fuzzers"! youtube.com/watch?v=ZfuRDw…
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
BSides Melbourne
@BSidesMelbourne
|
1. velj |
|
Our amazing speaker line has been released. Check them out below on our website. The schedule will be announced soon🥳👇👇
bsidesmelbourne.com/2020-speakers.…
#bsides #Melbourne #infosecurity pic.twitter.com/rBQSE9JII8
|
||
|
|
||
|
Thuan Pham
@ThuanpvNus
|
30. sij |
|
any apps that run concurrently on different computers and communicate with each other, like Blockchain-based apps, I think
|
||
|
|
||
|
Thuan Pham
@ThuanpvNus
|
30. sij |
|
My take-away from recent review article paper of P. Godefroid -- 3 (of N) open challenges in #fuzzing 1) how to engineer exhaustive symbolic testing in a cost-effective manner, 2) how to automate the generation of input grammars, and 3) how to effectively fuzz distributed apps
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
Clint Gibler
@clintgibler
|
28. sij |
|
Over the past few years I've spent 100s (1000s?) of hours studying how companies have scaled their security.
Here are my @AppSecCali slides that distill what I've learned- the big, scalable, systematic wins that measurably improve your security posture.
docs.google.com/presentation/d…
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
GitHub Security Lab
@GHSecurityLab
|
28. sij |
|
Check out @Nosoynadiemas ' tips on Fuzzing, to overcome known challenges and maximize results: securitylab.github.com/research/fuzzi…
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
Marcel Böhme
@mboehme_
|
24. sij |
|
My #fuzzing conjecture* for 2020.
An 𝗲𝘅𝗽𝗼𝗻𝗲𝗻𝘁𝗶𝗮𝗹 increase in the # cores available to your favourite fuzzer yields a 𝗹𝗶𝗻𝗲𝗮𝗿 increase in coverage achieved (or # bugs found) after a fixed time budget. Maybe less.
*Give me counter-evidence!
|
||
|
|
||
|
Thuan Pham
@ThuanpvNus
|
22. sij |
|
Great talk, Caroline! May i get (early) access to the preprint of your RLCheck paper :)
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
Caroline Lemieux
@cestlemieux
|
22. sij |
|
Finally uploaded video of my talk "Expanding the Reach of Fuzz Testing", which I gave at UMass Amherst! Introduces PerfFuzz, FuzzFactory, FairFuzz, Zest + JQF, RLCheck and Autopandas 😃 youtu.be/xfJeiteNOik
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
Maurício Aniche
@mauricioaniche
|
20. sij |
|
We (@serg_delft) just opened our software testing lecture notes. It currently contains 14 full chapters, 52k words, 63 videos, and 82 exercises. License: CC-BY-NC-SA. Feel free to use it! sttp.site
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
aspiring capybara
@fitzgen
|
16. sij |
|
📢 Announcing better support for fuzzing with structured inputs in Rust! 📢
New releases of `cargo fuzz`, `libfuzzer-sys`, and `arbitrary` better support writing fuzz targets that take well-formed instances of custom input types.
Details: fitzgeraldnick.com/2020/01/16/bet…
|
||
|
|
||
|
Thuan Pham
@ThuanpvNus
|
16. sij |
|
Just in a few weeks' time based on my estimation :) Stay tuned, please. Thanks.
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
Alban Lecocq
@skeetmtp
|
12. sij |
|
I'm using Afl to find "packet of death" for 3 years, but never manage to detect statefull bug with it. Indeed there little litterature on the subject. Can't wait to read more details on #AFLNet twitter.com/ThuanpvNus/sta…
|
||
|
|
||
| Thuan Pham proslijedio/la je tweet | ||
|
Marcel Böhme
@mboehme_
|
13. sij |
|
Good news! We just released our tool and preprint.
Preprint: mboehme.github.io/paper/ICSE20.T…
Github: github.com/DroidTest/Time…
Lead and implemented by @zhendong_ and Lucia.
Collab @NUSComputing, @MonashInfotech & @UNIBUC
#AndroidDev #openscience twitter.com/mboehme_/statu…
|
||
|
|
||
|
Thuan Pham
@ThuanpvNus
|
13. sij |
|
Thanks Guido. DM sent :)
|
||
|
|
||
|
Thuan Pham
@ThuanpvNus
|
13. sij |
|
Thanks for your interest. We integrate network communication over Socket directly into AFLNet so that it can easily send requests and process the server responses in order. I am really interested in possible alternatives like your approach. Does it work like Preeny?
|
||
|
|
||