logoalt Hacker News

tptacekyesterday at 7:49 PM1 replyview on HN

This would make sense if every memory corruption vulnerability was equivalently exploitable, which is of course not true. I think you'll find Google does in fact fuzz ffmpeg, though.


Replies

bgwalteryesterday at 8:05 PM

Google gives a pittance even for full ossfuzz integration. Which is why many projects just have the bare minimum fuzz tests. My original point was that even with these bare minimum tests ossfuzz has found way more than "AI" has.

show 1 reply