Project Springfield: Cloud-based fuzz testing for uncovering million-dollar bugs

This Moday Microsoft debuted Project Springfield, a cloud-based fuzz testing (aka fuzzing) service that the company has been working on for a quite a while. David Molnar and Patrice Godefroid, two of the key researchers behind Project Springfield, have been claiming since 2010 that fuzzing in the cloud will revolutionize security testing, and now they have provided the means to prove that assertion. What is fuzz testing? Fuzz testing is a method for discovering bugs … More Continue reading Project Springfield: Cloud-based fuzz testing for uncovering million-dollar bugs

Hack a Nexus from afar, get $200,000

Google has issued a challenge to bug hunters around the world: find a vulnerability or bug chain that achieves remote code execution on multiple Android devices knowing only the devices’ phone number and email address, and you’ll be handsomely rewarded. The Project Zero Prize is a contest that will run until March 14, 2017, and successful contestants will vie for the top prize of $200,000. Those that come second will get half of that, and … More Continue reading Hack a Nexus from afar, get $200,000

Justice by keylogger – the biter bit! [Chet Chat Podcast 250]

Here’s our latest security podcast – ransomware, bug hunting, keyloggers and a pair of cybercrime busts. Enjoy! Continue reading Justice by keylogger – the biter bit! [Chet Chat Podcast 250]

Can a computer system compete against human CTF experts?

DARPA announced on Thursday that a computer system designed by a team of Pittsburgh-based researchers is the presumptive winner of the Agency’s Cyber Grand Challenge. The winning computer system, dubbed Mayhem, was created by a team known as ForAllSecure—one of seven teams that competed for nearly $4 million in prizes in an all-day competition, performed in front of 5,000 computer security professionals and others at the Paris Las Vegas Conference Center. Xandra, a computer system … More Continue reading Can a computer system compete against human CTF experts?