This tweet is for FUZZING enthusiasts !! Our research group at NUS (https://t.co/JCVXCHKLRK) is looking for practitioners and researchers to take this survey about software testing: https://t.co/AP3KNPcM3F
We'll donate $5 USD to Doctors Without Borders (up to 100 responses)!
Hey software testers... Let's talk about starting a company to test the fuck out of AI solutions and publish our results. We could call it ClosedAI.
Companies are investing billions in making dangerous technology. Maybe they'll invest in making it safe.
Mutation testing uses artificial faults to assess test suite quality. How semantically related are the operators used to seed faults to real faults? Check out our findings (accepted for @icstconference#icst2023 research track): https://t.co/qozm9Oz7j4
If you have a background in Isabelle (or other proof systems), I'd appreciate your help in completing a formal proof of Elle's correctness. I've got most of the formalism and properties defined, but I'm stuck on lemmata. Interested? [email protected]
https://t.co/8eFbI3JHUB
"In the context of auditing Pornhub we have identified two critical flaws in PHP’s garbage collection algorithm (c.f. How we broke PHP, hacked Pornhub and earned $20,000)."
У @GlafiraZhur узнал про существование специальных очков, которые симулируют плохое зрение.
Купите такие своим дизайнерам, чтобы они тестировали насколько легко пользоваться вашим продуктом.
https://t.co/AROTxjQxxE
We're starting to grow #LTP native test coverage in KernelCI with these subsets:
mm https://t.co/TgI2lrpj2h
ipc https://t.co/oapPpylf6p
crypto https://t.co/rd60qVwsYo
Many more coming soon!
About LTP: https://t.co/zxzfnJFrhR
#Linux#kernelci
Список строк, которые с высокой вероятностью могут вызвать проблемы при использовании в качестве данных для ввода пользователем.
https://t.co/JCakcDhelr
Можно использовать напрямую, а можно добавить в корпус фаззера.
We already integrated our Query Plan Guidance (QPG) approach into SQLancer (see https://t.co/YG1D3H8Cms). Feel free to give it a try! I also gave a talk on QPG at Tsinghua University, hosted by Yu Jiang, earlier today and received insightful questions and feedback!
99% of /proc/pid/stat parsing code is buggy.
It splits by space, but 2nd field is exe name which may contain space:
Bugs are everywhere: OpenJDK, qemu, BoehmGC, containers/sandboxes; same bug in C/C++/Java/Go/Py/JS/Rust, ~every hit:
https://t.co/1DMAgZNsM5
Fix: strrchr(')') first
If you are willing to put your fuzzer to the test, SBFT'23 will host a 🚨FUZZING COMPETITION🚨
If you would like to know how to participate, look at the instructions: https://t.co/zjhgatEv7s
#ICSE2023#ICSE23#SBFT2023#SBFT23#Fuzzing#FuzzTesting