Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Trapfuzzer - Coverage-Guided Binary Fuzzing with Breakpoints

Hack In The Box Security Conference via YouTube

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This course presents trapfuzzer, a Python and C tool for coverage-guided binary fuzzing using breakpoint-based instrumentation through GDB and Windows debuggers. It covers corpus distillation, tracing, fuzz scheduling, debugger integration, and applying the workflow to WPS Office.

Syllabus

Intro
What is Fuzzing?
What is Coverage-Guided Fuzzing?
Background
Inspiration
Overview
binary patcher - basic-block-info-file example
binary patcher - example
Seed Mutation
Fuzzer Module - Corpus Distillation
Trace module - Theory
Lets Fuzz WPS - Find Target Module
Lets Fuzz WPS - Linux Version of FileMon
GDB Python API
Workflow
Code - GDB Plugin
Code - Tracer Part
Speed up Instrument - accelerated mode
Lets Fuzz WPS Again!
Initial Results
GDB Internals
Modify GDB
Code for SIGTRAP
Architecture
Windows Support #2 - DbgEngTracer
Dialog Box
Preparing the Environment
Future Plans

Taught by

Hack In The Box Security Conference

Reviews

Start your review of Trapfuzzer - Coverage-Guided Binary Fuzzing with Breakpoints

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.