I'm interested in your fuzz methods... how to find so many crashes?
-
-
-
1) Create many different fuzzers 2) improve them frequently 3) Actively avoid known issues 4) Target MSIE/Edge, not Firefox/Chrome
-
why target only MSIE/Edge, Sir?
-
Who says I do? I focused my fuzzing there because that's where the money was, but this is now changing.
-
When you try to make a living by finding bugs, it pretty much boils down to "bugs found × cash per bug / hours spent analyzing".
-
fair enough!
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.