oss-fuzz-gen and PromeFuzz

These are competitors—both use LLMs to automatically generate fuzzing harnesses, with oss-fuzz-gen being Google's production-grade framework integrated with OSS-Fuzz infrastructure, while PromeFuzz offers an alternative knowledge-driven approach for the same core problem.

oss-fuzz-gen
59
Established
PromeFuzz
46
Emerging
Maintenance 10/25
Adoption 10/25
Maturity 16/25
Community 23/25
Maintenance 6/25
Adoption 8/25
Maturity 15/25
Community 17/25
Stars: 1,372
Forks: 208
Downloads:
Commits (30d): 0
Language: Python
License: Apache-2.0
Stars: 50
Forks: 10
Downloads:
Commits (30d): 0
Language: C++
License: MIT
No Package No Dependents
No Package No Dependents

About oss-fuzz-gen

google/oss-fuzz-gen

LLM powered fuzzing via OSS-Fuzz.

This framework helps software security teams automate and enhance their fuzz testing efforts by using Large Language Models (LLMs) to generate new fuzz targets for C, C++, Java, and Python projects. It takes existing project code and an LLM as input, then outputs new fuzzing code and detailed reports on its effectiveness, including crash discovery and code coverage. This is intended for security engineers and quality assurance professionals focused on identifying vulnerabilities in open-source and proprietary software.

software-security vulnerability-research fuzz-testing static-analysis quality-assurance

About PromeFuzz

pvz122/PromeFuzz

PromeFuzz: A Knowledge-Driven Approach to Fuzzing Harness Generation with Large Language Models

PromeFuzz helps software developers and security engineers automatically generate robust test cases, known as fuzzing harnesses, for C and C++ libraries. It takes a library's source code, documentation, and API usage patterns as input, then creates effective fuzzing harnesses that can uncover hidden vulnerabilities and improve code coverage. This is ideal for those responsible for software quality assurance and security testing.

software-security vulnerability-discovery software-testing code-auditing quality-assurance

Scores updated daily from GitHub, PyPI, and npm data. How scores work