← Back
OtherGoogle Project Zero·5 months ago

On the Effectiveness of Mutational Grammar Fuzzing

Mutational grammar fuzzing, while effective at finding complex bugs, suffers from two key limitations: coverage gains don't necessarily correlate with bug discovery, especially when bugs require chaining multiple function calls, and the technique tends to produce overly similar samples that lack diversity. A simple but effective mitigation strategy involves periodically restarting fuzzing workers with empty corpora while maintaining a server corpus, allowing workers to generate fresh diverse samples independently before syncing with accumulated coverage, which empirical testing on libxslt demonstrated could uncover unique crashes more quickly than continuous fuzzing sessions.

Read full article at Google Project Zero

Related Articles

OtherInfosecurity Magazine·6 hours ago

Interpol Operation Jackal IV Identifies 263 Cybercrime Suspects

Interpol's Operation Jackal IV has resulted in 58 arrests and identified 263 cybercrime suspects distributed across 22 countries, representing a significant multinational enforcement action. The operation demonstrates coordinated international law enforcement efforts targeting cybercriminal networks on a global scale.

OtherThe Hacker News·7 hours ago

CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has published the results of two red team assessments it conducted simultaneously against two critical infrastructure organizations, using what it described as similar tradecraft while recording sharply different defensive outcomes. Both organizations were fully compromised at the domain level, and in both, the red team also

OtherSchneier on Security·8 hours ago

Spyware for Babies

Baby monitoring companies like Nanit are expanding their surveillance capabilities through AI-powered systems designed to track infants and young children's health, development, and behavior around the clock. These platforms are collecting increasingly granular biometric and behavioral data—from speech and language development to motor skills—while planning to extend their monitoring reach into early adolescence. The sector's significant funding and ambitions raise concerns about the scale and scope of data collection on minors who cannot consent to surveillance.

OtherThe Hacker News·8 hours ago

Imagine the SOC Without a Queue: From Alert Backlog to AI Hypothesis Engine

The SOC we've always known was built around a model that guarantees most of the alert queue will never receive analyst review. There's never time. In a traditional SOC, the typical progression follows a well-known pattern: an alert arrives; a detection engine assigns a severity score. The issue then waits for a human to decide if it should escalate to an investigation. Given the volume of