A. FUZZER
Fuzzer is the type of application to perform fuzzing. fuzzer is a tool used by security professionals (and professional hackers :) to test a parameter of an application. Typical fuzzers test an application for buffer overflows, format string vulnerabilities, and error handling. More advanced fuzzers incorporate functionality to test for directory traversal attacks, command execution vulnerabilities, SQL Injection and Cross Site Scripting vulnerabilities. Web Vulnerability scanners typically perform all of this functionality, and can be considered an advanced fuzzer.
B. FUZZING
Fuzzing performed to test for a program and look for anomalies functions, ability of programs to address error, or excessiveinput, use the no and other reasonable program
Tidak ada komentar:
Posting Komentar