Vincenzo Mezzela
Automated Backend Security Testing with AFL++ Fuzzer.
Rel. Cataldo Basile. Politecnico di Torino, Master of science program in Computer Engineering, 2024
Abstract
In the last decades, fuzzing has shown to be an effective software vulnerabilities discovering technique. By subjecting a program to a multitude of diverse inputs, fuzzing primarily serves as a means of security testing. Despite efforts by the Open Source community to enhance usability, fuzzers mainly remain tools in the hands of security experts. Improvements are still needed to make them accessible to a wider audience. In Amadeus IT, security teams currently employ a manual process to deploy a black-box fuzzer over the network for testing critical systems. However, this approach proves to be both inefficient in scaling and ineffective in yielding high-quality results.
In this thesis, we explore the current fuzzing research landscape to introduce a refined and more effective fuzzing solution
Relators
Academic year
Publication type
Number of Pages
Additional Information
Course of studies
Classe di laurea
Ente in cotutela
Aziende collaboratrici
URI
![]() |
Modify record (reserved for operators) |
