Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

LibFuzzer serves as an in-process, coverage-guided engine for evolutionary fuzzing. By being linked directly with the library under examination, it injects fuzzed inputs through a designated entry point, or target function, allowing it to monitor the code paths that are executed while creating variations of the input data to enhance code coverage. The coverage data is obtained through LLVM’s SanitizerCoverage instrumentation, ensuring that users have detailed insights into the testing process. Notably, LibFuzzer continues to receive support, with critical bugs addressed as they arise. To begin utilizing LibFuzzer with a library, one must first create a fuzz target—this function receives a byte array and interacts with the API being tested in a meaningful way. Importantly, this fuzz target operates independently of LibFuzzer, which facilitates its use alongside other fuzzing tools such as AFL or Radamsa, thereby providing versatility in testing strategies. Furthermore, the ability to leverage multiple fuzzing engines can lead to more robust testing outcomes and clearer insights into the library's vulnerabilities.

Description

American fuzzy lop is a security-focused fuzzer that utilizes a unique form of compile-time instrumentation along with genetic algorithms to automatically generate effective test cases that can uncover new internal states within the targeted binary. This approach significantly enhances the functional coverage of the code being fuzzed. Additionally, the compact and synthesized test cases produced by the tool can serve as a valuable resource for initiating other, more demanding testing processes in the future. Unlike many other instrumented fuzzers, afl-fuzz is engineered for practicality, boasting a minimal performance overhead while employing a diverse array of effective fuzzing techniques and strategies for minimizing effort. It requires almost no setup and can effortlessly manage complicated, real-world scenarios, such as those found in common image parsing or file compression libraries. As an instrumentation-guided genetic fuzzer, it excels at generating complex file semantics applicable to a wide variety of challenging targets, making it a versatile choice for security testing. Its ability to adapt to different environments further enhances its appeal for developers seeking robust solutions.

API Access

Has API Yes 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

C Yes 
C++ Yes 
ClusterFuzz Yes 
Google ClusterFuzz Yes 
Atheris Yes 
FreeBSD No 
Fuzzbuzz Yes 
Go No 
Java No 
Jazzer Yes 
NetBSD No 
OCaml No 
Objective-C No 
OpenBSD No 
Python No 
QEMU No 
Rust No 

Integrations

C Yes 
C++ Yes 
ClusterFuzz Yes 
Google ClusterFuzz Yes 
Atheris No 
FreeBSD Yes 
Fuzzbuzz No 
Go Yes 
Java Yes 
Jazzer No 
NetBSD Yes 
OCaml Yes 
Objective-C Yes 
OpenBSD Yes 
Python Yes 
QEMU Yes 
Rust Yes 

Pricing Details

Free
Free Trial No 
Free Version Yes 

Pricing Details

Free
Free Trial No 
Free Version Yes 

Deployment

Web-Based No 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac No 
Linux Yes 
Chromebook No 

Deployment

Web-Based No 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac Yes 
Linux Yes 
Chromebook No 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Vendor Details

Company Name

LLVM Project

Founded

2003

Website

llvm.org/docs/LibFuzzer.html

Vendor Details

Company Name

Google

Country

United States

Website

github.com/google/AFL

Product Features

Product Features

Alternatives

Atheris Reviews

Atheris

Google

Alternatives

LibFuzzer Reviews

LibFuzzer

LLVM Project
afl-unicorn Reviews

afl-unicorn

Battelle
afl-unicorn Reviews

afl-unicorn

Battelle
Honggfuzz Reviews

Honggfuzz

Google
Sulley Reviews

Sulley

OpenRCE
Jazzer Reviews

Jazzer

Code Intelligence