Explore advancements in JavaScript engine fuzzing through this conference talk by Samuel Groß and Carl Smith at OffensiveCon23. Delve into topics such as splicing, converting to JavaScript, and finding bugs through code coverage analysis. Learn about probing, mutator techniques, and examine real-world bug examples, including expiration issues. Discover cold coverage feedback methods and complexity analysis tools like Wildback. Gain insights into program templates, hybrid engines, and regular expression engines. Investigate mini fuzzers, destructialization techniques, and program space concepts. This 23-minute presentation offers a comprehensive overview of cutting-edge JavaScript engine fuzzing techniques for security researchers and developers.
Advancements in JavaScript Engine Fuzzing - OffensiveCon 2023