onefuzz

A self-hosted Fuzzing-As-A-Service platform

  • Owner: microsoft/onefuzz
  • Platform:
  • License:: MIT License
  • Category::
  • Topic:
  • Like:
    0
      Compare:

Github stars Tracking Chart

OneFuzz

A self-hosted Fuzzing-As-A-Service platform

Project OneFuzz enables continuous developer-driven fuzzing to proactively
harden software prior to release. With a single
command
, which can be baked into
CICD
, developers can launch
fuzz jobs from a few virtual machines to thousands of cores.

Build Status

Build Onefuzz

Features

  • Composable fuzzing workflows: Open source allows users to onboard their own
    fuzzers, swap instrumentation, and manage seed inputs.
  • Built-in ensemble fuzzing: By default, fuzzers work as a team to share strengths,
    swapping inputs of interest between fuzzing technologies.
  • Programmatic triage and result de-duplication: It provides unique flaw cases that
    always reproduce.
  • On-demand live-debugging of found crashes: It lets you summon a live debugging
    session on-demand or from your build system.
  • Observable and Debug-able: Transparent design allows introspection into every
    stage.
  • Fuzz on Windows and Linux: Multi-platform by design. Fuzz using your own OS
    build
    , kernel, or nested hypervisor.
  • Crash reporting notification callbacks: Including Azure DevOps Work
    Items
    and Microsoft Teams
    messages

For information, check out some of our guides:

Are you a Microsoft employee interested in fuzzing? Join us on Teams at Fuzzing @ Microsoft.

Contributing

This project welcomes contributions and suggestions. Most contributions require
you to agree to a Contributor License Agreement (CLA) declaring that you have
the right to, and actually do, grant us the rights to use your contribution.
For details, visit https://cla.microsoft.com.

When you submit a pull request, a CLA-bot will automatically determine whether
you need to provide a CLA and decorate the PR appropriately (e.g., label,
comment). Simply follow the instructions provided by the bot. You will only
need to do this once across all repositories using our CLA.

This project has adopted the Microsoft Open Source Code of Conduct.
For more information see the Code of Conduct FAQ
or contact opencode@microsoft.com with any
additional questions or comments.

Data Collection

The software may collect information about you and your use of the software and
send it to Microsoft. Microsoft may use this information to provide services
and improve our products and services. You may turn off the telemetry as
described in the
repository
.
There are also some features in the software that may enable you and Microsoft
to collect data from users of your applications. If you use these features, you
must comply with applicable law, including providing appropriate notices to
users of your applications together with a copy of Microsoft's privacy
statement. Our privacy statement is located at
https://go.microsoft.com/fwlink/?LinkID=824704. You can learn more about data
collection and use in the help documentation and our privacy statement. Your
use of the software operates as your consent to these practices.

For more information:

Reporting Security Issues

Security issues and bugs should be reported privately, via email, to the
Microsoft Security Response Center (MSRC) at
secure@microsoft.com. You should receive a
response within 24 hours. If for some reason you do not, please follow up via
email to ensure we received your original message. Further information,
including the MSRC PGP
key, can be found in the Security TechCenter.

Main metrics

Overview
Name With Ownermicrosoft/onefuzz
Primary LanguageC#
Program languageRust (Language Count: 10)
Platform
License:MIT License
所有者活动
Created At2020-07-27 22:23:30
Pushed At2023-11-01 09:22:49
Last Commit At
Release Count111
Last Release Name8.9.0 (Posted on )
First Release Name1.0.0 (Posted on )
用户参与
Stargazers Count2.8k
Watchers Count89
Fork Count200
Commits Count2.2k
Has Issues Enabled
Issues Count928
Issue Open Count192
Pull Requests Count2174
Pull Requests Open Count41
Pull Requests Close Count451
项目设置
Has Wiki Enabled
Is Archived
Is Fork
Is Locked
Is Mirror
Is Private