Mozilla Chief Security Officer, Window Snyder and Mozilla Director of Ecosystem Development, Mike Shaver will be giving a briefing as part of Black Hat USA 2007, a computer security conference running in Las Vegas, Nevada from July 28 to August 2.
According to Internet News, during the talk, Building and breaking the browser, scheduled for August 2, they will show for the first time an automated security testing tool developed by Mozilla. The tool is what is called a fuzzer, a program that generates random testing input for an application. In this case, one fuzzer was developed to test HTTP and FTP access and another to test the JavaScript component. According to the briefing description these “have led to the discovery and resolution of dozens of critical security bugs”
It must be noted that since the input is randomly generated, a fuzzer is more of a bug finding tool that lead to better quality rather than a quality assurance tool per se.
Via Internet News.
mozilla links





ShareThis
[...] El primer oficial de seguridad de Mozilla, Window Zinder y el desarrollador del ecosistema de Mozilla Mike Shaver han anunciado en la conferencia de Black Hat USA 2007 una nueva herramienta de pruebas automatizada llamada fuzzer. [...]