logo

Leveling Up Fuzzing: Finding more vulnerabilities with AI

ID: 711cb16a-78b3-5a77-9d1b-12ff3decc0cb

STIX ID: report--711cb16a-78b3-5a77-9d1b-12ff3decc0cb

Feed Name: Google Online Security Blog

Threat Score
60/100

Date Published: 2024-11-20

Date Updated: 2026-04-27

Author: Kimberly Samra

...
...

Google's OSS-Fuzz team reports that AI-powered fuzzing using LLM-generated and enhanced fuzz targets increased coverage across 272 C/C++ projects (adding 370k+ lines) and discovered 26 new vulnerabilities — most notably CVE-2024-9143 in the critical OpenSSL library — and describes improvements (richer prompt context, iterative developer-like workflows, and new indexing infrastructure) that enabled these results.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.