Open Source Fuzzing Tools

Chapter 5: Commercial Fuzzing Solutions

Introduction

As fuzzing becomes more mainstream, there is a real need for commercial tools to help those who need to use fuzzing tools but do not want to "mix-and-match" various free tools that may be half-baked and frequently suffer from lack of maintenance or support. Those who need the tool to "just work" may want to look at the commercial tools available.

The obvious disadvantage of commercial tools (other than costing money) is that you are limited to the vendor's way of doing things. Unlike open source tools, you cannot dive into the code and tailor it to your specific needs.

However, commercial tools tend to have a more complete rationale for how to use them, and usually work "out of the box." Consequently, the money you pay is often saved by the quick path to using or implementing them into your fuzzing process, especially if your interest is beyond a mere hobbyist.

Four commercial products typically are mentioned when it comes to fuzzing, and although some of them do not fit the classic definition of fuzzing, each solves the problem from a different perspective. All products are already mature and proven and are in use by large corporations worldwide.

In the next few years, more commercial solutions are likely to appear as the need for fuzzers grows.

Here are the solutions in alphabetical order.

beSTORM (by Beyond Security)

"beSTORM performs a comprehensive analysis, exposing security holes in your product and during the development process. beSTORM represents a new approach...

UNLIMITED FREE
ACCESS
TO THE WORLD'S BEST IDEAS

SUBMIT
Already a GlobalSpec user? Log in.

This is embarrasing...

An error occurred while processing the form. Please try again in a few minutes.

Customize Your GlobalSpec Experience

Category: Cluster Software and Tools
Finish!
Privacy Policy

This is embarrasing...

An error occurred while processing the form. Please try again in a few minutes.