API Fuzzer

API Fuzzer

Fuzzapi
Honggfuzz

Honggfuzz

Google
+
+

Related Products

  • Astra Pentest
    215 Ratings
    Visit Website
  • ZeroPath
    2 Ratings
    Visit Website
  • Aikido Security
    120 Ratings
    Visit Website
  • WebCatalog Desktop
    1 Rating
    Visit Website
  • Criminal IP
    14 Ratings
    Visit Website
  • ManageEngine Endpoint Central
    2,393 Ratings
    Visit Website
  • Zengo Wallet
    414 Ratings
    Visit Website
  • Wiz
    1,062 Ratings
    Visit Website
  • Pikmykid
    232 Ratings
    Visit Website
  • Action1
    734 Ratings
    Visit Website

About

API Fuzzer allows to fuzz-request attributes using common pentesting techniques and lists vulnerabilities. API Fuzzer gem accepts an API request as input and returns vulnerabilities possible in the API. Cross-site scripting vulnerability, SQL injection, blind SQL injection, XML external entity vulnerability, IDOR, API rate limiting, open redirect vulnerabilities, information disclosure flaws, info leakage through headers, and cross-site request forgery vulnerability.

About

Honggfuzz is a security-oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW-based). It’s multi-process and multi-threaded, there’s no need to run multiple copies of your fuzzer, as Honggfuzz can unlock the potential of all your available CPU cores with a single running instance. The file corpus is automatically shared and improved between all fuzzed processes. It’s blazingly fast when the persistent fuzzing mode is used. A simple/empty LLVMFuzzerTestOneInput function can be tested with up to 1mo iteration per second on a relatively modern CPU. Has a solid track record of uncovered security bugs, the only (to date) vulnerability in OpenSSL with the critical score mark was discovered by Honggfuzz. As opposed to other fuzzers, it will discover and report hijacked/ignored signals from crashes (intercepted and potentially hidden by a fuzzed program).

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Individuals wanting a tool to find vulnerabilities in their code and test their applications

Audience

Anyone requiring a solution to detect coding errors and security vulnerabilities

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

Free
Free Version
Free Trial

Pricing

Free
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Fuzzapi
github.com/Fuzzapi/API-fuzzer

Company Information

Google
United States
github.com/google/honggfuzz

Alternatives

Vega

Vega

Subgraph

Alternatives

LibFuzzer

LibFuzzer

LLVM Project
Atheris

Atheris

Google
Honggfuzz

Honggfuzz

Google
go-fuzz

go-fuzz

dvyukov

Categories

Categories

Integrations

ClusterFuzz
Cygwin
FreeBSD
Google ClusterFuzz
NetBSD
OpenSSL
Ruby

Integrations

ClusterFuzz
Cygwin
FreeBSD
Google ClusterFuzz
NetBSD
OpenSSL
Ruby
Claim API Fuzzer and update features and information
Claim API Fuzzer and update features and information
Claim Honggfuzz and update features and information
Claim Honggfuzz and update features and information