Quantcast
Channel: BOT24
Viewing all articles
Browse latest Browse all 8064

Pretty simple browser regular expressions fuzzer

$
0
0

This is a pretty simple browser regular expressions fuzzer. When launching, it
generates files and writes them to folder "samples/". After files have been
generated, open launch.html in your browser and fuzz.

main.py - generator:
regex-fuzz>main.py

    Options:
        -n      amount of samples to generate
        -p      fuzz pattern attribute for input tag
        -d      fuzz database (if available for browser)
        -j      fuzz JavaScript regex
        -e      preferred encoding

    At least one of fuzzing options (p,d,j) must be specified.

cleanup.py - this script will erase all files in folder "samples/"
log.php - logger that will write log files to folder "logs/"

Can fuzz JavaScript regular expressions, <input> pattern attribute and Web
SQL database. Not all browsers supports all mentioned features.

Found one vulnerability in Opera and one bug in Google Chrome. Not so much for
a single fuzzer, but as it was said, this is basic regexp fuzzer.

click on the following link to access additional info...https://github.com/ax330d/regex-fuzz

Viewing all articles
Browse latest Browse all 8064

Trending Articles