Konano / ReqsMiner
[NDSS 2024] ReqsMiner is an innovative fuzzing framework developed to discover previously unexamined inconsistencies in CDN forwarding requests. The framework uses techniques derived from reinforcement learning to generate valid test cases, even with minimal feedback, and incorporates real field values into the grammar-based fuzzer.
☆20Updated 10 months ago
Alternatives and similar repositories for ReqsMiner:
Users that are interested in ReqsMiner are comparing it to the libraries listed below
- ☆24Updated 2 years ago
- Artifact for ICSE 2023☆49Updated 2 years ago
- ☆15Updated 2 years ago
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆95Updated last year
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆67Updated 8 months ago
- FuzzCache: Optimizing Web Application Fuzzing Through Software-Based Data Cache (ACM CCS 2024)☆10Updated 6 months ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆43Updated 2 years ago
- S&P2023 Paper☆39Updated 2 years ago
- ☆21Updated 2 years ago
- a dataflow analysis framework implemented in Go, like soot☆35Updated 2 years ago
- A benchmark to evaluate taint analysis☆29Updated 2 years ago
- A grey-box web application Fuzzer☆23Updated 8 months ago
- Docker 逃逸 Release Agent 利用始末☆69Updated 2 years ago
- WALA 学习笔记☆14Updated last year
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆13Updated 4 months ago
- ☆32Updated 11 months ago
- CVE-2021-4204: Linux Kernel eBPF Local Privilege Escalation☆61Updated 3 years ago
- ☆64Updated 3 years ago
- CTF Challenge☆18Updated 4 years ago
- ☆42Updated 2 years ago
- Auto-generated CodeQL rules for matching CVE vulnerabilities and variants.☆169Updated 7 months ago
- CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸☆32Updated 2 years ago
- Taint analysis implementation based on Heros and Soot☆44Updated last year
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆11Updated 7 months ago
- gosec动态规则修改版☆12Updated 3 years ago
- ☆38Updated 3 years ago
- 更好的包装pwntools,提高编写pwn题exp效率的工具☆27Updated 4 years ago
- Low-level RASP: Protecting Applications Implemented in High-level Programming Languages☆59Updated last year
- IDA MIPS静态扫描脚本,汇编审计辅助脚本☆14Updated 4 years ago
- 以太坊单合约交易调试工具☆16Updated 3 years ago