Show HN: Fuzz Map – a GUI fuzzer, interactive demo
fuzzmap.io
fuzzmap.io
> In the short term, I'd like to make a plug-and-play version of Fuzz Map that supports end-to-end React fuzzing. You won't have to change your build process or use a special browser—just run ./fuzzmap localhost:8080 -p 9090 and start fuzzing or live programming! A reverse proxy will add instrumentation on the fly.
Eagerly waiting for this. I need this. I don't write tests for a certain React codebase [1], and this could be a life saver. Amazing work!1: Before you hate, I'm not against tests and I advise on writing them. There are certain situations in this case.
Is that some way related to why almost every GNOME shell extension is a memory hog (due to memory leaks?), I was fed up of replacing shell extensions in the hope of finding better one and finally disabled shell extensions altogether.
I've hardly had any GNOME crash after disabling shell extensions.
P.S. Congratulations on the launch, OP. Seems like a very useful too, Would try to play with it later.
I replaced the extensions I use with standalone applications and I've never been happier with GNOME. But its sad that the extensions ruin the experience of GNOME and possibly one of the main reasons for the hate it gets as a DE.
There is also a GNOME/FreeDesktop memory PSI notifier thing but it isn't in Debian yet.
https://gitlab.freedesktop.org/hadess/low-memory-monitor/ https://www.hadess.net/2019/12/gmemorymonitor-low-memory-mon... https://www.hadess.net/2019/08/low-memory-monitor-new-projec...
I really wish there was a way to debug where all the leakage is coming from, I don't think it has always been the case :(
So for GNOME shell,
coredumpctl gdb /usr/bin/gnome-shell
(gdb) bt full
Then head on to GNOME's gitlab to post the issue, Only to be confronted by similar issues being open for past five years :PP.S. I mean no offense to GNOME developers and contributors, I love GNOME and use it on all my devices(including phone!) but sometimes I wish they worked more on stability than creating under cooked mechanisms which abuses the system(GNOME extensions).
[1] https://wiki.archlinux.org/title/Debugging/Getting_traces
Does this tool have a state model that you can check the application state against? In other words, does it have property-based testing? Here[1] is a demo of what that looks like.
I
[1] https://medium.com/criteo-engineering/detecting-the-unexpect...
I figured that'd make the demo more approachable to people who weren't already into fuzzing or formal methods. But being able to automatically discover non-crashing bugs using property-based testing could be pretty powerful.
if (e) a else b
becomes if (e) { hit(1); a }
else { hit(2); b }
There's more detail in the writeup if you curious, just scroll down!The example they provide shows a simple food ordering system and the fuzzer eventually discovers how to place an order, but not before first encountering validation errors and fuzzing past them.
The space where the video is supposed to be is blank. Clicking on play instantly skips to 0:05 mark and nothing else happens. Firefox on Windows.
it works fine here on Firefox + Debian GNU/Linux 11 stable/bullseye.
Isn't this a really uninformative/ misleading name?
Good to know though. I kept hearing this term and didn't know what it referred to. Thanks for the link!