Mayhem Blog

Why Fuzz Test: 20 Mozilla Vulnerabilities Found With Fuzz Testing

Why Fuzz Test: 20 Mozilla Vulnerabilities Found With Fuzz Testing

Recently, Mozilla, makers of the Firefox browser, reported 20 vulnerabilities they found through fuzz testing their code.
3 Steps to Automate Offense to Increase Your Security in 2023

3 Steps to Automate Offense to Increase Your Security in 2023

I was recently challenged to come up with the best methods you can use in 2023 to make the systems you are developing more secure. I realized it boils down to one thing: automating offense as part of your defensive security program.
What does the Federal Guidance on Securing the Software Supply Chain Mean for Developers?

What does the Federal Guidance on Securing the Software Supply Chain Mean for Developers?

In this blog, we’ll take a look at Part One of the Securing The Software Supply Chain series released by the NSA, the CISA, and the ODNI.
How SAST and Mayhem Work Together for Comprehensive Application Security Testing

How SAST and Mayhem Work Together for Comprehensive Application Security Testing

Learn how SAST and Mayhem can work together to identify both known-unknown and unknown-unknown risks.
Why Vulnerability Scanning Alone Is Not Enough to Keep Your Software Secure

Why Vulnerability Scanning Alone Is Not Enough to Keep Your Software Secure

With vulnerability scanning, you are only addressing the known vulnerabilities and missing the bigger picture, which are the unknown vulnerabilities.
Why “Complete Coverage” SAST Tools Fall Short for Developers

Why “Complete Coverage” SAST Tools Fall Short for Developers

Using SAST alone can cause significant frustration for developers and fall short for security for two fundamental reasons.
How Mayhem Helped Uncover a Security Vulnerability in RustOS (CVE-2022-36086)

How Mayhem Helped Uncover a Security Vulnerability in RustOS (CVE-2022-36086)

This post outlines some of the techniques used to identify the vulnerability CVE-2022-36086 in RustOS and how Mayhem helped discover it.
Automatically Resolve Errors During Analysis with Mayhem

Automatically Resolve Errors During Analysis with Mayhem

When executing the target in the context of a dynamic analysis, Mayhem employs mechanisms that first identify the root cause of a potential issue and then try to resolve it by intelligently providing different configuration values.
3 Ways Mayhem Helps Developers Deliver Secure Code Easily

3 Ways Mayhem Helps Developers Deliver Secure Code Easily

Mayhem for Code helps developers save time by eliminating the need to manually write test cases and comb through false positives, as well as helping find and fix vulnerabilities before software is released.

Fancy some inbox Mayhem?

Subscribe to our monthly newsletter for expert insights and news on DevSecOps topics, plus Mayhem tips and tutorials.

By subscribing, you're agreeing to our website terms and privacy policy.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.