Channel: LiveOverflow
Category: Education
Tags: afl trickfuzzingparallel fuzzingliveoverflowfuzzeraflplusplusout of memoryguided fuzzingaflsudoeditamerican fuzzy lopno cpubaron sameditsetuidhow to hackexploit tutoriallive overflowhacking tutorialsystem errorsecurity researchpwneditmemory corruptionsudocoverage guided fuzzer
Description: We are using afl to fuzz the sudo binary, but we run into a lot more issues. In this video we are troubleshooting some issues and come up with solutions. Article version: liveoverflow.com/troubleshooting-afl-fuzzing-problems Grab the files: github.com/LiveOverflow/pwnedit Correction: afl can fuzz setuid process, I was just dumb. More details in this video: youtu.be/TLa2VqcGGEQ?t=323 Episode 03: 00:00 - Intro 00:30 - afl: No more free CPU cores 01:10 - Patching execs in target binary 01:47 - afl: Unable to create file. No space left on device 03:06 - afl Trick: Find non-memory corruption issues 04:22 - Fuzzing setuid sudo as root 06:38 - Next fuzz attempt -=[ ā¤ļø Support ]=- ā per Video: patreon.com/join/liveoverflow ā per Month: youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join -=[ š Social ]=- ā Twitter: twitter.com/LiveOverflow ā Website: liveoverflow.com ā Subreddit: reddit.com/r/LiveOverflow ā Facebook: facebook.com/LiveOverflow -=[ š P.S. ]=- All links with "*" are affiliate links.