@LiveOverflow
  @LiveOverflow
LiveOverflow | Troubleshooting AFL Fuzzing Problems | Ep. 03 @LiveOverflow | Uploaded 3 years ago | Updated 2 hours ago
We are using afl to fuzz the sudo binary, but we run into a lot more issues. In this video we are troubleshooting some issues and come up with solutions.

Article version: liveoverflow.com/troubleshooting-afl-fuzzing-problems
Grab the files: github.com/LiveOverflow/pwnedit

Correction: afl can fuzz setuid process, I was just dumb. More details in this video: youtu.be/TLa2VqcGGEQ?t=323

Episode 03:
00:00 - Intro
00:30 - afl: No more free CPU cores
01:10 - Patching execs in target binary
01:47 - afl: Unable to create file. No space left on device
03:06 - afl Trick: Find non-memory corruption issues
04:22 - Fuzzing setuid sudo as root
06:38 - Next fuzz attempt

-=[ ❤️ Support ]=-

→ per Video: patreon.com/join/liveoverflow
→ per Month: youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join

-=[ 🐕 Social ]=-

→ Twitter: twitter.com/LiveOverflow
→ Website: liveoverflow.com
→ Subreddit: reddit.com/r/LiveOverflow
→ Facebook: facebook.com/LiveOverflow

-=[ 📄 P.S. ]=-

All links with "*" are affiliate links.
Troubleshooting AFL Fuzzing Problems | Ep. 03The End Of Humans In MinecraftVelocity Exploit on Paper?Reading Player Position with DLL Injection - Pwn Adventure 3Exploit Dev Pitfall Corrupted ShellcodeCan We Find a New Exploit Strategy? | Ep. 13Finding iOS Kernel Exploit // SockPuppet Jailbreak - CVE-2019-8605Found a Crash Through Fuzzing? Minimize AFL Testcases! | Ep. 05Sudo Exploit for (old) Ubuntu 20.04 LTSMy theory on how the webp 0day was discovered (BLASTPASS)Root Cause Analysis With AddressSanitizer (ASan) | Ep. 06Script Gadgets! Google Docs XSS Vulnerability Walkthrough

Troubleshooting AFL Fuzzing Problems | Ep. 03 @LiveOverflow

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER