Untidy: Python-based XML fuzzer

Untidy is a Python-based XML fuzzer. It takes XML data as input and generates a set of modified, potentially invalid XML data based on the source input.

In a nutshell, fuzzing testing, is a software testing technique that sends random inputs to an application. If the target application contains a vulnerability that can lead to a crash, or a server error (in case of web applications), it can be determined and be noted.

Usually fuzzers are good at finding buffer overflow, denial-of-service and web-related vulnerabilities such as SQL injections and XSS. Fuzzing is becoming an important part of penetration testing and especially software security as it often finds odd defects which human testers would fail to find.

There are no prerequisites for using Untidy. Just download the file and extract the files. We’ve provided a Python script that shows how to use Untidy. Enjoy!


Post a Comment



Security-Hacks is a web site that covers tips and tricks for security. Updated several times daily, Security-Hacks points out tools downloads, how-to's and tutorials.

Contact


Have a hot hack? want to request a hack? let us know - editor [at] security-hacks.com

subscribe

Enter your Email

Archives

Add to Technorati Favorites