Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Fuzzing Android - A Recipe for Uncovering Vulnerabilities Inside System Components in Android

Black Hat via YouTube

Overview

Explore a powerful fuzzing approach for uncovering vulnerabilities in Android's core system components in this 45-minute Black Hat conference talk. Delve into the general methodology and its practical application across multiple real-life Android OS targets, including the Stagefright framework, mediaserver process, APK install process, installd daemon, dex2oat, and ART. Learn about the fuzzing process, encompassing data/seed generation, test case execution, logging, and triage mechanisms. Discover strategies for addressing challenges such as bug reproducibility, identifying unique issues, and prioritizing based on severity. Gain insights into the development of specialized tools using this methodology, with a focus on innovative technical details. Examine the impressive results achieved, including thousands of crashes discovered, numerous unique issues identified, and six CVE entries released by Google.

Syllabus

Fuzzing Android: A Recipe For Uncovering Vulnerabilities Inside System Components In Android

Taught by

Black Hat

Reviews

Start your review of Fuzzing Android - A Recipe for Uncovering Vulnerabilities Inside System Components in Android

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.