正式开始Fuzz的学习之路,大概总结了一下,大概学习路线如下:

源码Fuzz

二进制Fuzz

  • afl-qemu
  • FirmAFL
  • GreenHouse
  • LibAFL-qemu
  • TFuzz(加了符号执行,去除sanity check)

V8Fuzz

  • Fuzzilli

内核Fuzz

  • Syzkaller :sequence of syscalls
  • TriforceLinuxSyscallFuzzer
  • Unicorefuzz
  • KAFL
  • EQUAFL

Hypervisor

  • Nyx

Android Fuzz

竞态条件

  • BananaFzz
  • secodefuzz

https://googleprojectzero.blogspot.com/2024/06/project-naptime.html
https://googleprojectzero.blogspot.com/2024/10/from-naptime-to-big-sleep.html#bigsleepteam