EPISODE · Apr 6, 2020 · 37 MIN
Zsolt Imre — Fuzz testing is easy
from The Application Security Podcast · host Chris Romeo and Robert Hurlbut
Fuzz testing can sound specialized and difficult, but Zsolt Imre argues that teams can start small and learn quickly. He joins Chris and Robert to explain what fuzzers do, which defects they are good at finding, and how his path from offensive security to defensive engineering shaped GUARDARA. The conversation covers target selection, root-cause analysis, programming languages, protocol complexity, and why no single fuzzer fits every system. Zsolt offers a practical adoption path: choose a meaningful target, integrate feedback into development, and iterate. The result is an accessible guide for AppSec teams that want to add fuzzing without turning it into a research project.The Application Security Podcast is brought to you by Security Journey.About Security JourneySecurity Journey provides application security education for developers and everyone in the software development lifecycle.→ Learn more about Security JourneyConnect with Zsolt Imre:→ GUARDARAMentioned in this episode:→ GUARDARAFollow the Application Security Podcast:➜ Home➜ X➜ LinkedIn➜ YouTube➜ Instagram➜ FacebookChapters:00:00 Why fuzz testing is easier than it looks02:00 Zsolt Imre’s path into security04:00 Moving from offensive to defensive work07:00 What fuzz testing actually does09:00 Who benefits from fuzzing13:00 Finding and understanding root causes18:00 Choosing targets and programming languages23:00 Complexity, protocols, and coverage26:00 Why there is no one-size-fits-all fuzzer29:00 A practical way to get started34:00 Integrating fuzzing and iterating36:00 Final takeaways
Embed this episode
What this episode covers
Fuzz testing can sound specialized and difficult, but Zsolt Imre argues that teams can start small and learn quickly. He joins Chris and Robert to explain what fuzzers do, which defects they are good at finding, and how his path from offensive security to defensive engineering shaped GUARDARA. The conversation covers target selection, root-cause analysis, programming languages, protocol complexity, and why no single fuzzer fits every system. Zsolt offers a practical adoption path: choose a me...
Ready to play
Zsolt Imre — Fuzz testing is easy
No transcript for this episode yet
Similar Episodes
No similar episodes found.
Similar Podcasts
No similar podcasts found.