Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Afl-fuzz runs a program until main() and then forks it repeatedly. An empty main() can be called at least 10000 times per second this way.


With AFL++ you can even determine exactly where the fork happens:

https://github.com/AFLplusplus/AFLplusplus/blob/stable/instr...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: