Skip to content

0x3000 · Area

Finding Bugs

The cheapest memory-safety bug is the one you find before release. Sanitizers turn silent corruption into loud, precise reports, and coverage-guided fuzzers generate the inputs that trigger them. Together they are the most effective bug-finding pair available to C and C++ teams.

Guides in this area

  1. How ASan, UBSan, MSan, TSan and HWASan work, which flags and runtime options to use, how to read an ASan report line by line, and how to run sanitizers in CI.

  2. Write a fuzz harness, build it with sanitizers, run libFuzzer and AFL++, manage corpora and dictionaries, and run continuous fuzzing in CI with OSS-Fuzz or ClusterFuzzLite.

Other areas