Vincenzo Mezzela
Automated Backend Security Testing with AFL++ Fuzzer.
Rel. Cataldo Basile. Politecnico di Torino, Corso di laurea magistrale in Ingegneria Informatica (Computer Engineering), 2024
Abstract
In the last decades, fuzzing has shown to be an effective software vulnerabilities discovering technique. By subjecting a program to a multitude of diverse inputs, fuzzing primarily serves as a means of security testing. Despite efforts by the Open Source community to enhance usability, fuzzers mainly remain tools in the hands of security experts. Improvements are still needed to make them accessible to a wider audience. In Amadeus IT, security teams currently employ a manual process to deploy a black-box fuzzer over the network for testing critical systems. However, this approach proves to be both inefficient in scaling and ineffective in yielding high-quality results.
In this thesis, we explore the current fuzzing research landscape to introduce a refined and more effective fuzzing solution
Relatori
Anno Accademico
Tipo di pubblicazione
Numero di pagine
Informazioni aggiuntive
Corso di laurea
Classe di laurea
Ente in cotutela
Aziende collaboratrici
URI
![]() |
Modifica (riservato agli operatori) |
