Top 239 fuzzing open source projects

Droid Application Fuzz Framework
Android application fuzzing framework with fuzzers and crash monitor.
Fuzzcheck Rs
Structure-aware, in-process, coverage-guided, evolutionary fuzzing engine for Rust functions.
Qasan
QASan is a custom QEMU 3.1.1 that detects memory errors in the guest using AddressSanitizer.
✭ 246
cfuzzing
Certfuzz
This project contains the source code for the CERT Basic Fuzzing Framework (BFF) and the CERT Failure Observation Engine (FOE).
Filesensor
Dynamic file detection tool based on crawler 基于爬虫的动态敏感文件探测工具
Intruderpayloads
A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.
Trophy Case
🏆 Collection of bugs uncovered by fuzzing Rust code
Honggfuzz Rs
Fuzz your Rust code with Google-developed Honggfuzz !
Fuzzit
CLI to integrate continuous fuzzing with Fuzzit
Uafuzz
UAFuzz: Binary-level Directed Fuzzing for Use-After-Free Vulnerabilities
✭ 217
cfuzzing
Jfs
Constraint solver based on coverage-guided fuzzing
Rapid
Rapid is a Go library for property-based testing that supports state machine ("stateful" or "model-based") testing and fully automatic test case minimization ("shrinking")
Berserker
A list of useful payloads for Web Application Security and Pentest/CTF
Kafl
A fuzzer for full VM kernel/driver targets
Gramfuzz
gramfuzz is a grammar-based fuzzer that lets one define complex grammars to generate text and binary data formats.
Fdsploit
File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.
Javafuzz
coverage guided fuzz testing for java
Honggfuzz
Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)
Sharpfuzz
AFL-based fuzz testing for .NET
Papers
Academic papers and articles that I read related to web hacking, fuzzing, etc. / 阅读过的Web安全方向、模糊测试方向的一些论文与阅读笔记
Qrgen
Simple script for generating Malformed QRCodes.
Vfuzz
vfuzz
Fast Check
Property based testing framework for JavaScript (like QuickCheck) written in TypeScript
Pythonfuzz
coverage guided fuzz testing for python
Kleefl
Seeding fuzzers with symbolic execution
Fuzzfactory
Domain-Specific Fuzzing with Waypoints
Morph
An open source fuzzing framework for fun.
Fuzzinator
Fuzzinator Random Testing Framework
Fuddly
Fuzzing and Data Manipulation Framework (for GNU/Linux)
Libdiffuzz
Custom memory allocator that helps discover reads from uninitialized memory
Cfb
Canadian Furious Beaver is a tool for hijacking IRPs handler in Windows drivers, and facilitating the process of analyzing Windows drivers for vulnerabilities
Fuzzing Stuff
Resources About Fuzzing, For Multiple Platforms And All Popular Fuzzers. 500+ Open Source Tools Sorted By Star Count, 800+ Blog Posts Sorted By Publish Time.
✭ 144
fuzzing
Janus
Janus: a state-of-the-art file system fuzzer on Linux
Winafl
A fork of AFL for fuzzing Windows binaries
Sienna Locomotive
A user-friendly fuzzing and crash triage tool for Windows
Snodge
Randomly mutate JSON, XML, HTML forms, text and binary data for fuzz testing
Aflplusplus
The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power schedules, MOpt mutators, unicorn_mode, and a lot more!
Rest Api Fuzz Testing
REST API Fuzz Testing (RAFT): Source code for self-hosted service developed for Azure, including the API, orchestration engine, and default set of security tools (including MSR's RESTler), that enables developers to embed security tooling into their CI/CD workflows
Formatfuzzer
FormatFuzzer is a framework for high-efficiency, high-quality generation and parsing of binary inputs.
Fuzzing Survey
The Art, Science, and Engineering of Fuzzing: A Survey
Websocket Fuzzer
HTML5 WebSocket message fuzzer
Wooyun
wooyun public information backup
Clusterfuzz Tools
Bugs are inevitable. Suffering is optional.
Fisy Fuzz
This is the full file system fuzzing framework that I presented at the Hack in the Box 2020 Lockdown Edition conference in April.
Awesome Hacking
A collection of various awesome lists for hackers, pentesters and security researchers
Ansvif
A Not So Very Intelligent Fuzzer: An advanced fuzzing framework designed to find vulnerabilities in C/C++ code.
Awesome Cryptocurrency Security
😎 Curated list about cryptocurrency security (reverse / exploit / fuzz..)
Afl Snapshot Lkm
A Linux Kernel Module that implements a fast snapshot mechanism for fuzzing.
Octo
A fuzzing library in JavaScript. ✨
Crlf Injection Scanner
Command line tool for testing CRLF injection on a list of domains.
Firmae
Towards Large-Scale Emulation of IoT Firmware for Dynamic Analysis
Domato
DOM fuzzer
1-60 of 239 fuzzing projects