Author Topic: CERT Basic Fuzzing Framework (BFF) v2.5  (Read 2755 times)

undi

  • Newbie
  • *
  • Posts: 14
    • View Profile
on: May 09, 2012, 11:16:48 AM
Features

    Minimal initial configuration is required to start a fuzzing campaign
    Minimal supervision of the fuzzing campaign is required, as BFF can automatically recover from many common problems that can interrupt fuzzing campaigns
    Uniqueness determination through intelligent backtrace analysis
    Automated test case minimization reduces the effort required to analyze results by distilling the test case to the minimal changes to the input data required to induce a specific crash
    Online machine learning applied to fuzzing parameter and input file selection to improve the efficacy of the campaign
    Distributed fuzzing support
    Crash severity / exploitability triage

https://www.cert.org/download/bff/



ZEROF

  • Hero Member
  • *****
  • Posts: 1247
    • View Profile
    • Pen Tester
Reply #1 on: May 09, 2012, 04:48:34 PM
Hi,

I will just ask you : "Did you try to use this tool" ?



Don't ask, read : http://wiki.backbox.org
or just run sudo rm -rf /*


undi

  • Newbie
  • *
  • Posts: 14
    • View Profile
Reply #2 on: May 10, 2012, 11:02:21 AM
yea played around in a vm



ZEROF

  • Hero Member
  • *****
  • Posts: 1247
    • View Profile
    • Pen Tester
Reply #3 on: May 10, 2012, 03:16:08 PM
Like you said you have used with VM, next time read :

Requirements

DebianFuzz is provided in a format compatible with VMware Workstation 5.
The OS X installer requires Mac OS X Leopard or later.

Thoughts, pro, counters, any feedback?
« Last Edit: May 10, 2012, 03:46:52 PM by ostendali »


Don't ask, read : http://wiki.backbox.org
or just run sudo rm -rf /*