Collected research
Exposing Hidden Exploitable Behaviors in Programming Languages Using Differential Fuzzing
Exposing Hidden Exploitable Behaviors in Programming Languages Using Differential Fuzzing (Whitepaper)
XDiFF compares outputs and side effects across language implementations, operating systems and input modes. Canaries expose unexpected execution, file access and network activity in PHP, Ruby, Perl, Python and JavaScript examples. Several cases are intended facilities made dangerous by untrusted input; demonstrated web chains have specific application prerequisites.
Record
- Document
- Exposing Hidden Exploitable Behaviors in Programming Languages Using Differential Fuzzing (Whitepaper)
- Researcher
- Fernando Arnaboldi
- Published by
- IOActive / Black Hat
- Format
- Whitepaper
- Topic
- Other
In the archive
Related sources
- XDiFF research code Repository
Tags
This page is the archive's own catalogue record. The research is the work of Fernando Arnaboldi, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .