Finding The .webp Vulnerability in 8s (Fuzzing with AFL++)
A guide on how to do fuzzing with AFL in an attempt to rediscover the libwebp vulnerability CVE-2023-4863 that was used to hack iPhones.
Want to learn hacking? Signup to (ad)
Buy my shitty font: (ad)
Watch webp Part 1:
Sudo Vulnerability Series:
Docker Video:
OSS-Fuzz:
OSS-Fuzz libwebp coverage:
AFLplusplus:
vanhauser’s blog:
vanhauser/thc on twitter:
AFLpluslus Persistent Mode:
Grab the code:
=[ ❤️ Support ]=
Find out how you can support LiveOverflow:
=[ 🐕 Social ]=
→ 2nd Channel:
→ Twitter:
→ Streaming:
→ TikTok: @liveoverflow_
→ Instagram:
→ Blog:
→ Subreddit:
→ Facebook:
Chapters:
00:00 - Intro
00:36 - How to Learn About Fuzzing?
02:36 - Setting Up Fuzzing With AFL
04:53 - My Docker Workflow for Fuzzing
06:35 - AFL Different Coverage Strategies
09:50 - Start the libwebp Fuzzing Campaign
11:58 - Adjusting the Fuzzer
13:45 - Why Don’t We Find a Crash?
15:49 - Fuzzing with AFL Persistent Mode
19:47 - Persistent Mode Fuzzing Results
20:46 - Finding the Vulnerability in 8s
1 view
0
0
1 month ago 00:02:36 1
Five Little Elves | Christmas Song For Kids | Super Simple Songs
1 month ago 00:02:36 5
Jingle Bells | Christmas Song | Super Simple Songs
1 month ago 00:03:02 1
Milk & Cookies | Holiday Song for Kids | Rhymington Square
1 month ago 00:12:48 1
The Brand New STIHL MS400.1! WHY is this CHAINSAW different?
1 month ago 00:04:12 2
Stuart Townend - Christ Be In My Waking
1 month ago 00:13:15 1
대왕 꽈배기 4개에 천원? 사장님이 봉사 정신으로 판매하는! 30년 경력의 꽈배기, 도너츠 / Super Speed Donuts Master / Korean street food
1 month ago 00:03:15 1
strange german man layout
1 month ago 00:02:03 1
d4vd - “Remember Me” (from Arcane Season 2)
1 month ago 00:23:23 1
Create CONSISTENT CHARACTERS from an INPUT IMAGE with FLUX! (ComfyUI Tutorial + Installation Guide)
2 months ago 00:14:36 1
TOP 40❗FAILS 4X4 THE CRAZIEST OFF ROAD ACCIDENTS ❌ INSANE FAILS AND WINS AMAZING VEHICLES 2024
2 months ago 00:11:43 1
AliExpress Is DEAD!? (FASTEST Shipping option)
2 months ago 00:04:27 1
Botsol vs. Leads Sniper: Email Extractor Showdown 🔥
2 months ago 01:04:50 1
ANA VIDOVIC - LIVE CONCERT - LAMBRECHT – CLASSICAL GUITAR EVENTS
2 months ago 00:02:51 1
🎵OVERWATCH: No Mercy - The Living Tombstone 🎵
2 months ago 00:03:28 1
Nemo - The Code (LIVE) | Switzerland🇨🇭| Grand Final | Eurovision 2024
2 months ago 00:03:39 1
Slipknot - Left Behind [OFFICIAL VIDEO] [HD]
2 months ago 01:04:51 18
Half in the Bag: Top 10 Horror Movies (2024) Part 2
2 months ago 01:34:05 1
Mature Kids | Motus Ninjas | Premier Series 2024
2 months ago 00:11:13 1
Dr Paul Enenche, Apostle Arome Backed PETER OBI CONTROVERSIAL Church Statement.
2 months ago 00:04:27 1
DJ AURM - Hold Me Tight
2 months ago 00:03:06 1
Billie Jean ∞ Michael Jackson ft. Minions
2 months ago 00:47:35 1
How to Sew a Little Winter Gnome “Snowy“ in a Cozy Sweater | Step-by-Step Tutorial
2 months ago 00:01:18 1
ORIVISION New Launch - 4 Channels HEVC HDMI Encoder EH1304
2 months ago 00:06:30 1
Leadstal vs. Leads Sniper: Which Email Extractor REALLY Gets the Job Done? 😎