test(stellar): add cargo-fuzz harness for stealth-sender batch payloads - #149
Merged
Conversation
Add a fuzz/ crate under stellar/stealth-sender with two libFuzzer targets that exercise the variable-length batch attack surface of batch_send: - batch_decode: round-trips arbitrary batch payloads through a wire codec, asserting decode never panics/over-reads and decode->encode->decode is a stable fixed point. - batch_execute: runs arbitrary parallel batch vectors through a model of the batch loop, asserting no event drift, no index drift, and no silent over-write of accumulated recipient balances. Both targets ship with a committed seed corpus. A scheduled nightly CI job runs cargo-fuzz on the Rust nightly toolchain with a 30-minute budget split across the two targets. The stealth-sender README documents the targets and the crash-reproduction one-liner.
Contributor
|
Merged. Fuzz harness is a nice safety net for stealth-batch-sender, thanks. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Add a fuzz/ crate under stellar/stealth-sender with two libFuzzer targets that exercise the variable-length batch attack surface of batch_send:
Both targets ship with a committed seed corpus. A scheduled nightly CI job runs cargo-fuzz on the Rust nightly toolchain with a 30-minute budget split across the two targets. The stealth-sender README documents the targets and the crash-reproduction one-liner.
closes #587