c0c0n is a 19 years old platform that is aimed at providing opportunities to showcase, educate, understand and spread awareness on Information Security, data protection, and privacy...
Fuzzing is a powerful technique for identifying vulnerabilities in software. This hands-on training will cover the theory and practical aspects of fuzzing, including coverage-guided fuzzing, basic blocks and binary instrumentation, corpus collection and minimization, target selection, crash triage and root cause analysis, and real-life CVE analysis.
Attendees will have the opportunity to practice fuzzing on Linux and apply the concepts and techniques learned in the training to fuzz real world software. This training is suitable for attendees with a basic understanding of software development and testing.
Basic knowledge of C/C++ development and debugging.
People who are interested in learning about vulnerability discovery, fuzzing, software developers, QA Engineers.
A laptop with admin privileges to run the provided VMs. VMs will be shared in a USB drive during the start of the workshop.
Deep dive in fuzzing and internals, how does coverage guided fuzzer works, how can you fuzz software, How can you debug and analyse crashes to find root cause of vulnerabilities.
Exploit developments, 0 Days. This is a course on fuzzing and vulnerability discovery and not on exploit development.
Principal Security Researcher