Section: .. / fuzzer /
| /// File Name: |
GPF.tar.bz2 |
Description:
|
GPF is a fuzzer that provides developers, security researchers, and quality assurance professionals the capability to quickly search for bugs/vulnerabilities in the exposed interface of networked applications. GPF uses captured packet sessions (from libpcap) to construct a protocol description from real traffic. Users can then configure various types of injected faults, manually modify the capture file, and define custom functions to deal with dynamic data.
| | Author: | Jared DeMott | | Homepage: | http://www.vdalabs.com/ | | File Size: | 3696219 | | Last Modified: | Jul 12 21:10:46 2007 |
| MD5 Checksum: | b8bb677fd9a0469bc9eaa6326d892e35 |
|
| /// File Name: |
EFS-PaiMei.zip |
Description:
|
The Evolutionary Fuzzing System (EFS) is a fuzzer that attempts to eliminate traditional fuzzer techniques of building a new fuzzer for each protocol by dynamically learning a protocol using code coverage and other feedback mechanisms.
| | Author: | Jared DeMott | | Homepage: | http://www.vdalabs.com/ | | File Size: | 3685497 | | Last Modified: | Jul 12 21:12:51 2007 |
| MD5 Checksum: | 5a6839d0c5ad756bc27a9c817bda71f9 |
|
| /// File Name: |
bss-0.6.tar.gz |
Description:
|
BSS (Bluetooth Stack Smasher) is a L2CAP layer fuzzer designed to assess the security of Bluetooth enabled devices by sending malicious packets.
| | Author: | Pierre BETOUIN | | Homepage: | http://securitech.homeunix.org/blue/ | | File Size: | 2044987 | | Last Modified: | Feb 7 15:07:39 2006 |
| MD5 Checksum: | f75ef04a7b1f253ef12135d471950048 |
|
| /// File Name: |
jbrofuzz-win32-05.zip |
Description:
|
JBroFuzz is an OWASP Project that emerged from penetration testing. It deals with fuzzing stateless network protocols such as HTTP, SOAP, XML, LDAP, etc. This version is the source code release.
| | Homepage: | http://www.owasp.org/index.php/Category:OWASP_JBroFuzz | | Changes: | Generators are read from file, Removed the jbrf1 file format and using a single txt file, TCP Sniffing gives the ability to launch a browser while sniffing traffic, updated a number of user interface components including the MenuBar, added copy-paste functionality within the application. This version is the executable release. | | File Size: | 1447361 | | Last Modified: | Feb 23 20:57:53 2007 |
| MD5 Checksum: | 6678b115dde95c6db5a410a195609dcc |
|
| /// File Name: |
jbrofuzz-jar-05.zip |
Description:
|
JBroFuzz is an OWASP Project that emerged from penetration testing. It deals with fuzzing stateless network protocols such as HTTP, SOAP, XML, LDAP, etc. This version is the source code release.
| | Homepage: | http://www.owasp.org/index.php/Category:OWASP_JBroFuzz | | Changes: | Generators are read from file, Removed the jbrf1 file format and using a single txt file, TCP Sniffing gives the ability to launch a browser while sniffing traffic, updated a number of user interface components including the MenuBar, added copy-paste functionality within the application. | | File Size: | 1272642 | | Last Modified: | Feb 23 20:57:20 2007 |
| MD5 Checksum: | 6bac2d67331edf3cd7b943929e3db25c |
|
| /// File Name: |
taof-0.3.tgz |
Description:
|
Taof is a GUI cross-platform Python generic network protocol fuzzer. It has been designed for minimizing set-up time during fuzzing sessions and it is especially useful for fast testing of proprietary or undocumented protocols.
| | Author: | Rodrigo Marcos | | Homepage: | http://sourceforge.net/projects/taof | | Changes: | Version 0.3 adds support for fuzzing both TCP and UDP protocols. Moreover, Taof 0.3 aids the monitoring process during fuzzing by the use of an embedded debugger (PyDbg). | | File Size: | 1126400 | | Last Modified: | Feb 6 00:25:49 2007 |
| MD5 Checksum: | 32c86c5f27a66aa583f0b2ce1534afcc |
|
| /// File Name: |
taof-0.2.tgz |
Description:
|
Taof is a GUI cross-platform Python generic network protocol fuzzer. It has been designed for minimizing set-up time during fuzzing sessions and it is especially useful for fast testing of proprietary or undocumented protocols.
| | Author: | Rodrigo Marcos | | Homepage: | http://sourceforge.net/projects/taof | | Changes: | Version 0.2 fixes a number of bugs and includes new exciting features such as the implementation of dictionary attacks and the possibility of including a variable length field on the fuzzed request. | | File Size: | 612872 | | Last Modified: | Nov 30 03:19:25 2006 |
| MD5 Checksum: | fbdd2858cc5ae8e451477e8aff0c6847 |
|
| /// File Name: |
jbrofuzz-0.4-exe.zip |
Description:
|
JBroFuzz is an OWASP Project that emerged from penetration testing. It deals with fuzzing stateless network protocols such as HTTP, SOAP, XML, LDAP, etc. This version is the Win32 executable release.
| | Homepage: | http://www.owasp.org/index.php/Category:OWASP_JBroFuzz | | Changes: | Generators are read from file, Removed the jbrf1 file format and using a single txt file, TCP Sniffing gives the ability to launch a browser while sniffing traffic, updated a number of user interface components including the MenuBar, added copy-paste functionality within the application. | | File Size: | 606228 | | Last Modified: | Feb 5 23:10:05 2007 |
| MD5 Checksum: | 573e8bb3daaf2fe482465197ac0c6148 |
|
| /// File Name: |
zzuf-0.12.tar.gz |
Description:
|
zzuf is a transparent application input fuzzer. It works by intercepting file operations and changing random bits in the program's input. zzuf's behavior is deterministic, making it easy to reproduce bugs.
| | Author: | Sam Hocevar | | Homepage: | http://sam.zoy.org/zzuf/ | | Changes: | Finished the libzzuf manual page, a crash, and some other bugs. | | File Size: | 446043 | | Last Modified: | Jun 13 19:14:01 2008 |
| MD5 Checksum: | 39f97432b02e358cdf2915f844ee3106 |
|
| /// File Name: |
zzuf-0.11.tar.gz |
Description:
|
zzuf is a transparent application input fuzzer. It works by intercepting file operations and changing random bits in the program's input. zzuf's behavior is deterministic, making it easy to reproduce bugs.
| | Author: | Sam Hocevar | | Homepage: | http://sam.zoy.org/zzuf/ | | Changes: | Minor memory and speed optimizations. | | File Size: | 440335 | | Last Modified: | May 19 19:11:53 2008 |
| MD5 Checksum: | bcb727ffb2af3574d22f8c5768f95490 |
|
| /// File Name: |
zzuf-0.10.tar.gz |
Description:
|
zzuf is a transparent application input fuzzer. It works by intercepting file operations and changing random bits in the program's input. zzuf's behavior is deterministic, making it easy to reproduce bugs.
| | Author: | Sam Hocevar | | Homepage: | http://sam.zoy.org/zzuf/ | | Changes: | Various code and documentation updates. | | File Size: | 425897 | | Last Modified: | Nov 2 22:38:32 2007 |
| MD5 Checksum: | 2cbaea84c18304df15ef6e74c0fb2d16 |
|
| /// File Name: |
zzuf-0.9.tar.gz |
Description:
|
zzuf is a transparent application input fuzzer. It works by intercepting file operations and changing random bits in the program's input. zzuf's behavior is deterministic, making it easy to reproduce bugs.
| | Author: | Sam Hocevar | | Homepage: | http://sam.zoy.org/zzuf/ | | File Size: | 422252 | | Last Modified: | Jul 11 03:19:36 2007 |
| MD5 Checksum: | 2c63c33b874877454ef5123c3c964a20 |
|
| /// File Name: |
zzuf-0.8.1.tar.gz |
Description:
|
zzuf is a transparent application input fuzzer. It works by intercepting file operations and changing random bits in the program's input. zzuf's behavior is deterministic, making it easy to reproduce bugs.
| | Author: | Sam Hocevar | | Homepage: | http://sam.zoy.org/zzuf/ | | File Size: | 419718 | | Last Modified: | Mar 6 00:50:01 2007 |
| MD5 Checksum: | 1970dcf4f77251bea843b0f6ae19231c |
|
| /// File Name: |
zzuf-0.7.tar.gz |
Description:
|
zzuf is a transparent application input fuzzer. It works by intercepting file operations and changing random bits in the program's input. zzuf's behavior is deterministic, making it easy to reproduce bugs.
| | Author: | Sam Hocevar | | Homepage: | http://sam.zoy.org/zzuf/ | | File Size: | 416738 | | Last Modified: | Jan 29 11:48:41 2007 |
| MD5 Checksum: | 234810a9dd47bdfa583f2511335e1fba |
|
| /// File Name: |
zzuf-0.5.tar.gz |
Description:
|
zzuf is a transparent application input fuzzer. It works by intercepting file operations and changing random bits in the program's input. zzuf's behavior is deterministic, making it easy to reproduce bugs.
| | Author: | Sam Hocevar | | Homepage: | http://sam.zoy.org/zzuf/ | | File Size: | 351354 | | Last Modified: | Jan 15 22:38:33 2007 |
| MD5 Checksum: | e0f061a2d3b6edf51ce29ca59b0d43ab |
|
| /// File Name: |
autodafe-0.1.tar.gz |
Description:
|
Autodafe is a fuzzing framework that can be used to uncover buffer overflows.
| | Author: | Martin Vuagnoux | | File Size: | 347273 | | Last Modified: | Aug 18 00:03:13 2006 |
| MD5 Checksum: | 1c10c69080952ab9dd2c819d1e9c044c |
|
| /// File Name: |
FileFuzz.zip |
Description:
|
FileFuzz is a graphical, Windows based file format fuzzing tool. FileFuzz was designed to automate the creation of abnormal file formats and the execution of applications handling these files. FileFuzz also has built in debugging capabilities to detect exceptions resulting from the fuzzed file formats.
| | Author: | Michael Sutton | | Homepage: | http://labs.idefense.com | | File Size: | 286891 | | Last Modified: | Aug 26 02:26:22 2005 |
| MD5 Checksum: | f424d673b608d1a5fbf00594c5b553f1 |
|
| /// File Name: |
jbrofuzz-0.4-src.zip |
Description:
|
JBroFuzz is an OWASP Project that emerged from penetration testing. It deals with fuzzing stateless network protocols such as HTTP, SOAP, XML, LDAP, etc. This version is the source code release.
| | Homepage: | http://www.owasp.org/index.php/Category:OWASP_JBroFuzz | | Changes: | Generators are read from file, Removed the jbrf1 file format and using a single txt file, TCP Sniffing gives the ability to launch a browser while sniffing traffic, updated a number of user interface components including the MenuBar, added copy-paste functionality within the application. | | File Size: | 217729 | | Last Modified: | Feb 5 23:10:26 2007 |
| MD5 Checksum: | c24a60894f8f97b3f70d40b9280f0768 |
|
| /// File Name: |
pyfault-0.1a.zip |
Description:
|
PyFault is a python library for fault injection in Win32 based applications. Currently it implements a DLL injection and ejection mechanism.
| | Author: | JS | | Homepage: | http://vdalabs.com/ | | File Size: | 206092 | | Last Modified: | Jul 11 21:08:40 2007 |
| MD5 Checksum: | 669f7f96cd7973a8f0071dae292c17fe |
|
| /// File Name: |
mistress.rar |
Description:
|
Mistress in an 'Application Sadism Environment' and can also be called a fuzzer. It is written in Python and was created for probing file formats on the fly and protocols with malformed data, based on pre-defined patterns. It is recommended that the project site be visited for further documentation and use cases.
| | Author: | posidron | | Homepage: | http://software.tripbit.net/mistress | | File Size: | 191474 | | Last Modified: | Mar 2 05:12:43 2006 |
| MD5 Checksum: | 4645eb78375e656076df614ef2e133b4 |
|
| /// File Name: |
wfuzz-1.4.tar.gz |
Description:
|
Wfuzz is a tool designed for bruteforcing Web Applications, it can be used for finding resources not linked (directories, files), bruteforce HEADERS, GET and POST parameters for checking different kind of injections (SQL, XSS, LDAP,etc), bruteforce Forms parameters (User/ Password), Fuzzing, etc.
| | Author: | Carlos del ojo, Christian Martorella | | Homepage: | http://www.edge-security.com/ | | File Size: | 148273 | | Last Modified: | Jan 25 03:29:33 2008 |
| MD5 Checksum: | b42b4449a9dade16c65a2a6928858e51 |
|
| /// File Name: |
SPIKEfile.tgz |
Description:
|
SPIKEfile is a Linux based file format fuzzing tool, based on SPIKE 2.9. It was designed to automate the launching of applications and detection of exceptions caused by fuzzed files. It uses standard SPIKE scripts to generate files and utilizes ptrace to pick up interesting signals and dump register state.
| | Author: | Adam Greene | | Homepage: | http://labs.idefense.com | | File Size: | 104081 | | Last Modified: | Aug 26 02:25:29 2005 |
| MD5 Checksum: | c57a794dbfb7c950abb0047b13bb8b5e |
|
| /// File Name: |
axman-1.0.0.zip |
Description:
|
AxMan is a web-based ActiveX fuzzing engine. The goal of AxMan is to discover vulnerabilities in COM objects exposed through Internet Explorer. Since AxMan is web-based, any security changes in the browser will also affect the results of the fuzzing process. This allows for a much more realistic test than other COM-based assessment tools. AxMan is designed to be used with Internet Explorer 6 only.
| | Author: | H D Moore | | Homepage: | http://metasploit.com/users/hdm/tools/axman/ | | File Size: | 94267 | | Last Modified: | Aug 17 03:11:21 2006 |
| MD5 Checksum: | 285816049f5deb523101d2ca1e38274b |
|
| /// File Name: |
WAFUTFF.pdf |
Description:
|
Whitepaper entitled "Writing a fuzzer using the Fuzzled framework". The paper includes some of the techniques used to dismantle protocols including documentation, observation and static analysis.
| | Author: | Tim Brown | | Homepage: | http://www.nth-dimension.org.uk/ | | File Size: | 83733 | | Last Modified: | Sep 5 00:45:10 2007 |
| MD5 Checksum: | add66aa7259bcf872fdab3c30ab0c06d |
|
|
|
|
|