Application protocol fuzzing has long been part of the Security Auditor's toolkit, but more and more projects are beginning to use fuzzing as part of their normal process for measuring the performance and security of a cyber infrastructure device or system. A fuzzer is a piece of software that intentionally sends out data containing injected errors. Simulating this invalid data exposes vulnerabilities and weaknesses.
BreakingPoint fuzzers are supported by the security component in the form of special security attacks. Each fuzzer Strike typically targets a specific data value or packet type and tries a multitude of different values in turn. The goal is to provide malicious data or to provide too much data in hopes that something will break, unveiling vulnerabilities. BreakingPoint’s Sean Bradly brings you this in-depth guide on how the BreakingPoint Storm CTM™ can be used to emulate application protocol fuzzing, detailing the importance of application fuzzing and how to assess cyber infrastructure with these scenarios.