YoVDO

A Journey Into Fuzzing WebAssembly Virtual Machines

Offered By: Black Hat via YouTube

Tags

Black Hat Courses Cybersecurity Courses Vulnerability Research Courses

Course Description

Overview

Embark on a comprehensive exploration of WebAssembly Virtual Machine fuzzing in this 38-minute Black Hat conference talk. Gain a thorough understanding of WebAssembly fundamentals before delving into the intricacies of VM architecture. Discover various attack surfaces and learn effective fuzzing strategies for targeting different VM components, from module parsing to runtime execution engines. Explore diverse fuzzing frameworks and techniques, including coverage-guided, structural, and differential fuzzing, to maximize success rates across multiple implementations. Examine the journey that led to the discovery of over 50 bugs and vulnerabilities in numerous C/C++/Rust projects. Conclude with a comprehensive overview of results, focusing on impactful vulnerabilities uncovered during this extensive research.

Syllabus

A Journey Into Fuzzing WebAssembly Virtual Machines


Taught by

Black Hat

Related Courses

Attack on Titan M, Reloaded - Vulnerability Research on a Modern Security Chip
Black Hat via YouTube
Attacks From a New Front Door in 4G & 5G Mobile Networks
Black Hat via YouTube
AAD Joined Machines - The New Lateral Movement
Black Hat via YouTube
Better Privacy Through Offense - How to Build a Privacy Red Team
Black Hat via YouTube
Whip the Whisperer - Simulating Side Channel Leakage
Black Hat via YouTube