<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Blackwing Intelligence: fuzzing</title><link>https://blackwinghq.com/tags/fuzzing/</link><description>Blackwing Intelligence provides high-end security engineering, analysis, and research services for engineering focused organizations</description><language>en</language><lastBuildDate>Sat, 22 Jun 2013 00:00:00 +0000</lastBuildDate><atom:link href="https://blackwinghq.com/tags/fuzzing/index.xml" rel="self" type="application/rss+xml"/><item><title>[talk] XNU Spelunking or Fuzzing the kernel inside your kernel</title><link>https://blackwinghq.com/research/talks/xnu-spelunking/</link><pubDate>Sat, 22 Jun 2013 00:00:00 +0000</pubDate><guid>https://blackwinghq.com/research/talks/xnu-spelunking/</guid><description>XNU, the OS X kernel, is made up of a somewhat unholy marriage of the monolithic BSD kernel and the CMU mach microkernel. Because of this marriage, in addition to BSD syscalls, XNU provides additional system calls and a large IPC interface for userland processes to interact with the underlying mach subsystem. The presence of these IPC interfaces significantly increases the available attack surface between the kernel and userland processes over just the traditional BSD system calls. This talk explores these interfaces and details the processes devised and lessons learned from building fuzzers for bug hunting in mach territory.</description></item></channel></rss>