Announcement

Collapse
No announcement yet.

Google Rolls Out ClusterFuzzLite For Easy-To-Use, Continuous Fuzzing

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Google Rolls Out ClusterFuzzLite For Easy-To-Use, Continuous Fuzzing

    Phoronix: Google Rolls Out ClusterFuzzLite For Easy-To-Use, Continuous Fuzzing

    As part of Google's effort around fuzzing for improving open-source security, the company today announced ClusterFuzzLite as their new, easy-to-use solution for fuzzing open and closed-source projects with ease as part of the CI/CD process...

    Phoronix, Linux Hardware Reviews, Linux hardware benchmarks, Linux server benchmarks, Linux benchmarking, Desktop Linux, Linux performance, Open Source graphics, Linux How To, Ubuntu benchmarks, Ubuntu hardware, Phoronix Test Suite

  • #2
    "fuzzing for improving open-source security" - only open source?

    Comment


    • #3
      >"fuzzing for improving open-source security" - only open source?

      The writeup isn't exactly right. It's about improving security everywhere. ClusterFuzzLite is actually intended fills a gap for closed source projects since open source projects can already use OSS-Fuzz.

      Comment


      • #4
        Originally posted by ddriver View Post
        "fuzzing for improving open-source security" - only open source?
        Well, they run a bunch of cloud instances on company dollar to continuously fuzz open source projects, especially those used in their products (Chromium, GCE, etc.), and from their perspective, other people's proprietary code is not even relevant... Nothing stops you from using the tool though.

        Comment


        • #5
          Originally posted by microcode View Post

          Well, they run a bunch of cloud instances on company dollar to continuously fuzz open source projects, especially those used in their products (Chromium, GCE, etc.), and from their perspective, other people's proprietary code is not even relevant... Nothing stops you from using the tool though.
          Right, we provide oss-fuzz as a serivce to open source projects. Closed source fuzzing as a service would have been too hard for us logistically. While closed source users could run ClusterFuzz themselves. ClusterFuzzLite lowers the bar significantly.

          Comment


          • #6
            typo: "GitHub Actionsi ntegration"

            Comment

            Working...
            X