{"repo":"fuzzland/ityfuzz","free":true,"listed":false,"github":"https://github.com/fuzzland/ityfuzz","clone":"git clone https://github.com/fuzzland/ityfuzz.git","description":"Blazing Fast Bytecode-Level Hybrid Fuzzer for Smart Contracts","language":"Rust","stars":1108,"topics":["concolic-execution","fuzzing","smart-contracts","aptos","evm","move","sui","ethereum","solidity","blockchain"],"license":"MIT","category":"blockchain-web3","readme_excerpt":"🍦 ItyFuzz [\\[Docs\\]](https://docs.ityfuzz.rs) / [\\[Research Paper\\]](https://dl.acm.org/doi/pdf/10.1145/3597926.3598059) / [\\[Twitter\\]](https://twitter.com/fuzzland ) / [\\[Discord\\]](https://discord.com/invite/qQa436VEwt) / [\\[Telegram\\]](https://t.me/fuzzland) ItyFuzz is a blazing-fast EVM and MoveVM smart contract hybrid fuzzer that combines symbolic execution and fuzzing to find bugs in smart contracts offchain and onchain. Install Example Fuzzing Deployed Smart Contract Generating full exploit to steal funds from a contract with flashloan + read-only reentrancy vulnerability on Polygon. Foundry Invariant Test Run a Foundry invariant test defined in Invariant contract in test/Invariant.sol . For other examples and usages, check out the docs. Performance On large real-world smart contract projects, ItyFuzz finds 126 vulnerabilities while Echidna finds 0 and Mythril finds 9. For details, refer to backtesting, research paper, and new bugs discovered. On small real-world smart contracts (ERC20, lottery, etc.), ItyFuzz gains 10% more test coverage than academia state-of-the-art fuzzer SMARTIAN using 1/30 of the time. On Consensys's Daedaluzz benchmark, ItyFuzz without symbolic execution finds 44% more bugs than Echidna and 31% more bugs than Foundry. ItyFuzz is also 2.5x faster than Echidna and 1.5x faster than Foundry. Features Chain forking to fuzz contracts on any chain at any block number. Accurate exploit generation for precision loss, integer overflow, fund stealing, Un","default_branch":null,"files":null,"tree":[],"storefront":"/r/fuzzland","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/fuzzland/ityfuzz/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}