Review Scan Results
Fuzzing Hero's engine will split results into Vulnerabilities and Observations. We group results by host, endpoints, and parameters to sensibly reduce duplicate results with the same root cause.
Vulnerabilities are issues that should have action taken on them. All vulnerabilities have an associated severity: critical, high, medium, low, or informational.
Observations are anomalous behavior that may be worth investigating, but don't fit into any vulnerability categories. They appear separately and have no severity.
Understanding Grouping
Fuzzing Hero works to consolidate issues to a root cause to reduce duplicate findings.
- Host: Issues that appear to affect the entire host.
- Endpoint: Issues that appear to affect a specific endpoint.
- Parameter: Issues that appear to affect a specific parameter.
Result Details
On both the Vulnerability and Observation pages, users can click on records to view more details.
Both types will show a summary of the finding and give applicable details. Each will include proof, which can be in the form of an HTTP request and response, Out-of-Band (OOB) interaction, or a text document showing gathered evidence.
Scan results will always show a baseline request to indicate what the request and response looked like before the discovery of an issue. You can click the Compare button on proof requests and responses to view a visual diff between both. Fuzzing Hero displays metadata on the proof requests where appropriate, such as response duration to indicate how long a response took.
Occurrences
Each occurrence is a self-contained set of proof. This will include a baseline and the associated steps and or examples to demonstrate the issue or observation. Each occurrence will be associated with the impacted location.
Occurrences enable balanced grouping, while ensuring that customers have clear proof of each location. It's up to customers if they choose to work on each occurrence as a separate actionable item or if they work on the group in aggregate.