<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[RSS Feed]]></title><description><![CDATA[RSS Feed]]></description><link>http://direct.ecency.com</link><image><url>http://direct.ecency.com/logo512.png</url><title>RSS Feed</title><link>http://direct.ecency.com</link></image><generator>RSS for Node</generator><lastBuildDate>Sun, 05 Apr 2026 03:12:42 GMT</lastBuildDate><atom:link href="http://direct.ecency.com/@fuzz-ai/rss" rel="self" type="application/rss+xml"/><item><title><![CDATA[The JSON-parsing vulnerability fixed by Steemd 0.20.9]]></title><description><![CDATA[In my previous bug report on steemd, @crokkon asked if custom JSON was also vulnerable which inspired me to take a closer look. The JSON parsing code in the FC library used by Steem did have a check for]]></description><link>http://direct.ecency.com/steem/@fuzz-ai/the-json-parsing-vulnerability-fixed-by-steemd-0-20-9</link><guid isPermaLink="true">http://direct.ecency.com/steem/@fuzz-ai/the-json-parsing-vulnerability-fixed-by-steemd-0-20-9</guid><category><![CDATA[steem]]></category><dc:creator><![CDATA[fuzz-ai]]></dc:creator><pubDate>Mon, 18 Feb 2019 22:22:48 GMT</pubDate><enclosure url="https://images.ecency.com/p/3DLAmCsuTe3bV13dhrdWmiiTzq9WMPZDTkYuSGyZVu3GHr9bikKtobS9UySkZWvFwRe2r3rV3zj5K4D1mjDp7uVkMTNibUtq4p1E6BJjeCbuayyVYwShVGLgupiSnvJjVVoHZQafT8H1T3JhooAs5k64XHSGkLe?format=match&amp;mode=fit" length="0" type="false"/></item><item><title><![CDATA[Reproducing a Memory-Tracking Bug with TLA+]]></title><description><![CDATA[I was interested in a first project for getting familiar with TLA+, “a high-level language for modelling programs and systems.” TLA+ has been used to find errors in the design of real-world distributed]]></description><link>http://direct.ecency.com/programming/@fuzz-ai/reproducing-a-memory-tracking-bug-with-tla</link><guid isPermaLink="true">http://direct.ecency.com/programming/@fuzz-ai/reproducing-a-memory-tracking-bug-with-tla</guid><category><![CDATA[programming]]></category><dc:creator><![CDATA[fuzz-ai]]></dc:creator><pubDate>Mon, 18 Feb 2019 02:37:30 GMT</pubDate><enclosure url="https://images.ecency.com/p/C3TZR1g81UNaPs7vzNXHueW5ZM76DSHWEY7onmfLxcK2iPYxhSDmt9gBMdQENJ1Q9fgtgvcUjRRX3dm1NtfHheb2edkpQdkkAryEzXSphDqyxURBac1co2W?format=match&amp;mode=fit" length="0" type="false"/></item><item><title><![CDATA[Fuzz-testing Ontology's NeoVM Execution Engine]]></title><description><![CDATA[Two smart contract fragments were identified that cause panics in the NeoVM implementation in the Ontology blockchain code. Introduction Ontology is a “distributed trust collaboration platform”, a blockchain]]></description><link>http://direct.ecency.com/ontology/@fuzz-ai/fuzz-testing-ontology-s-neovm-execution-engine</link><guid isPermaLink="true">http://direct.ecency.com/ontology/@fuzz-ai/fuzz-testing-ontology-s-neovm-execution-engine</guid><category><![CDATA[ontology]]></category><dc:creator><![CDATA[fuzz-ai]]></dc:creator><pubDate>Tue, 08 Jan 2019 05:59:36 GMT</pubDate><enclosure url="https://images.ecency.com/p/C3TZR1g81UNaPs7vzNXHueW5ZM76DSHWEY7onmfLxcK2iPQJcRBHcPMBzouuZ2qJPnHj6XCc3cH882cqQKbQcTtteWseAqqGpgPS3GoSFXPM9QyFCQYhMQJ?format=match&amp;mode=fit" length="0" type="false"/></item><item><title><![CDATA[Improving Ripple Unit Test Coverage with Fuzzing]]></title><description><![CDATA[Even quality code with good test coverage can benefit from fuzz testing! The Ripple blockchain server (rippled) did not exhibit any security holes in its JSON implementation, or any invariant violations]]></description><link>http://direct.ecency.com/software/@fuzz-ai/improving-ripple-unit-test-coverage-with-fuzzing</link><guid isPermaLink="true">http://direct.ecency.com/software/@fuzz-ai/improving-ripple-unit-test-coverage-with-fuzzing</guid><category><![CDATA[software]]></category><dc:creator><![CDATA[fuzz-ai]]></dc:creator><pubDate>Wed, 02 Jan 2019 22:09:21 GMT</pubDate><enclosure url="https://images.ecency.com/p/C3TZR1g81UNaPs7vzNXHueW5ZM76DSHWEY7onmfLxcK2iPYNo4nfp5nYJRLAPHMRNwcHZp1Z8yxzGYjqFGPtx8m52HbNWjSGDLGViq4rkVYgX6LRRXvGFmG?format=match&amp;mode=fit" length="0" type="false"/></item><item><title><![CDATA[Fuzz-Testing the Snappy Compression Algorithm]]></title><description><![CDATA[Using American Fuzzy Lop on the Snappy compression library found no new bugs, and reported only high memory usage related to preallocation of an output buffer. Users of Snappy should be aware of this]]></description><link>http://direct.ecency.com/software/@fuzz-ai/fuzz-testing-the-snappy-compression-algorithm</link><guid isPermaLink="true">http://direct.ecency.com/software/@fuzz-ai/fuzz-testing-the-snappy-compression-algorithm</guid><category><![CDATA[software]]></category><dc:creator><![CDATA[fuzz-ai]]></dc:creator><pubDate>Fri, 21 Dec 2018 06:14:33 GMT</pubDate><enclosure url="https://images.ecency.com/p/qjrE4yyfw5pEPvDbJDzhdNXM7mjt1tbr2kM3X28F6SraZgYUjH4aoFNzqLrBc8G4tToFbD99XW9RSRU6JANcg532SpWv24TMAGzW7bQjjSpZbrsZrbi5iN1k?format=match&amp;mode=fit" length="0" type="false"/></item><item><title><![CDATA[Steemd 0.20.6 bug - memory exhaustion when parsing malicious hello_message]]></title><description><![CDATA[Project Information Repository: Project Name: Steem Expected behavior The Steemd process should handle malformed messages arriving from a peer by logging and error and/or terminating the connection. Actual]]></description><link>http://direct.ecency.com/utopian-io/@fuzz-ai/steemd-0-20-6-bug-memory-exhaustion-when-parsing-malicious-hellomessage</link><guid isPermaLink="true">http://direct.ecency.com/utopian-io/@fuzz-ai/steemd-0-20-6-bug-memory-exhaustion-when-parsing-malicious-hellomessage</guid><category><![CDATA[utopian-io]]></category><dc:creator><![CDATA[fuzz-ai]]></dc:creator><pubDate>Wed, 19 Dec 2018 02:21:21 GMT</pubDate></item><item><title><![CDATA[A Memory Exhaustion Attack Against the Steem Blockchain]]></title><description><![CDATA[This article explains the security risk patched in steemd 0.20.7. Using American Fuzzy Lop on a message parsing library contained in the Steem blockchain implementation found unexpectedly large memory]]></description><link>http://direct.ecency.com/software/@fuzz-ai/a-memory-exhaustion-attack-against-the-steem-blockchain</link><guid isPermaLink="true">http://direct.ecency.com/software/@fuzz-ai/a-memory-exhaustion-attack-against-the-steem-blockchain</guid><category><![CDATA[software]]></category><dc:creator><![CDATA[fuzz-ai]]></dc:creator><pubDate>Tue, 18 Dec 2018 06:13:21 GMT</pubDate></item><item><title><![CDATA[Introduction]]></title><description><![CDATA[Fuzz.ai is an early-stage startup dedicated to making software correctness tools easier to use. Fuzzers, model checkers, and property-based testing can make software more robust, expose security]]></description><link>http://direct.ecency.com/introduceyourself/@fuzz-ai/introduction</link><guid isPermaLink="true">http://direct.ecency.com/introduceyourself/@fuzz-ai/introduction</guid><category><![CDATA[introduceyourself]]></category><dc:creator><![CDATA[fuzz-ai]]></dc:creator><pubDate>Mon, 17 Dec 2018 03:53:27 GMT</pubDate><enclosure url="https://images.ecency.com/p/RGgukq5E6HBM2jscGd4Sszpv94XxHH2uqxMY9z21vaqHt4hMLruQbzm15qrhU6ysXSTS5KFhienbo7GgorSzgYVPdK8MXyKnkBAWnt47Rybp2RccYfKYSZnLyPVcid4?format=match&amp;mode=fit" length="0" type="false"/></item><item><title><![CDATA[Finding Bugs in the Steem Blockchain with Fuzz Testing]]></title><description><![CDATA[Using American Fuzzy Lop on the JSON parsing library contained in the Steem blockchain implementation found a latent bug. Fortunately, this bug is not exploitable in practice, though it may cause Steem]]></description><link>http://direct.ecency.com/steem/@fuzz-ai/finding-bugs-in-the-steem-blockchain-with-fuzz-testing</link><guid isPermaLink="true">http://direct.ecency.com/steem/@fuzz-ai/finding-bugs-in-the-steem-blockchain-with-fuzz-testing</guid><category><![CDATA[steem]]></category><dc:creator><![CDATA[fuzz-ai]]></dc:creator><pubDate>Fri, 14 Dec 2018 23:34:48 GMT</pubDate><enclosure url="https://images.ecency.com/p/C3TZR1g81UNaPs7vzNXHueW5ZM76DSHWEY7onmfLxcK2iQbjefQir57rLt62bKbF9QKFYVfjEZ4DPpmtPQLEYThkcFF1ykhEk5vtTrTtoxf7WXNMk2EJSTg?format=match&amp;mode=fit" length="0" type="false"/></item></channel></rss>