{"repo":"gardatech/bugbane","free":true,"listed":false,"github":"https://github.com/gardatech/bugbane","clone":"git clone https://github.com/gardatech/bugbane.git","description":"tools for CI fuzzing automation","language":"Python","stars":34,"topics":["automation","certification","cicd","fuzzing","sdlc","triaging"],"license":"Apache-2.0","category":"workflow-automation","readme_excerpt":"BugBane 🌍 English Русский Fuzz testing automation toolkit. Features BugBane goals: 1. CI fuzzing pipeline simplification by generalizing typical testing steps and standardizing the resulting artifacts. 2. Performing fuzzing in an efficient configuration based on best practices. 3. Reports generation in accordance with the actual actions performed. BugBane features: 1. Building applications for fuzz testing with sanitizers and coverage support: AFL++, libFuzzer. 2. Fuzzing built targets with AFL++, libFuzzer (including Atheris), dvyukov/go-fuzz, go test using a given number of CPU cores until meeting a given stop condition. 3. Synchronizing test cases between fuzzer and storage directories, including deduplication and minimization with use of fuzzer tools. 4. Coverage collection of tested app's source code using fuzzer-generated samples, coverage reports creation (lcov, go tool cover). 5. Reproducing of fuzzer-discovered crashes and hangs. Determining location of bugs in the source code: C/C++, C#, Go, Python. 6. Submitting reproducible bugs to vulnerability management system: Defect Dojo. 7. Creating screenshots for both fuzzers and coverage reports. 8. Report generation with use of Jinja2 templates. The BugBane utilities are best used together, though they're also usable on their own. Install Requirements UNIX-like OS Python = 3.6 Dependencies required by the tools: bb-build : fuzzer compilers in PATH (afl-g++-fast, clang, ...). bb-corpus : fuzzer minimization tools in PATH","default_branch":null,"files":null,"tree":[],"storefront":"/r/gardatech","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/gardatech/bugbane/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}