예제 #1
0
 def __init__(self,
              name,
              host,
              port,
              max_retries=10,
              timeout=None,
              logger=None) -> object:
     """
     :param name: name of the target
     :param host: host ip (to send data to) currently unused
     :param port: port to send to
     :param max_retries: maximum connection retries (default: 10)
     :param timeout: socket timeout (default: None)
     :param logger: logger for the object (default: None)
     """
     super(HttpTarget, self).__init__(name, logger)
     self.host = host
     self.port = port
     if (host is None) or (port is None):
         raise ValueError('host and port may not be None')
     self.timeout = timeout
     self.socket = None
     self.max_retries = max_retries
     self.config = ConfigParser()
     self.use_tls = self.config.get_tls()
     self.target_host = self.config.get_target_host_name()
     self.report = Report('report')
     self._uuid = GenerateUUID.generate_uuid()
예제 #2
0
 def testDataEntry(self):
     report = Report(self.report_name)
     entry_name = 'my entry'
     entry_data = 'some data'
     report.add(entry_name, entry_data)
     self.assertEqual(report.get(entry_name), entry_data)
     self.assertEqual(report.get(entry_name), entry_data)
예제 #3
0
파일: base.py 프로젝트: wflk/kitty
 def __init__(self, name='BaseTarget', logger=None):
     super(BaseTarget, self).__init__(name, logger)
     self.controller = None
     self.monitors = []
     self.report = Report(name)
     self.test_number = None
     self.fuzzer = None
예제 #4
0
 def testFailureInSubReportEntry(self):
     entry_name = 'sub report'
     report = Report(self.report_name)
     subreport = Report(entry_name)
     report.add(entry_name, subreport)
     subreport.failed(self.failure_reason)
     self.assertEqual(report.get_status(), Report.FAILED)
     self.assertEqual(report.get('reason'), self.failure_reason)
예제 #5
0
 def testErrorInSubReportEntry(self):
     entry_name = 'sub report'
     report = Report(self.report_name)
     subreport = Report(entry_name)
     report.add(entry_name, subreport)
     subreport.error(self.error_reason)
     self.assertEqual(report.get_status(), Report.ERROR)
     self.assertEqual(report.get('reason'), self.error_reason)
예제 #6
0
    def pre_test(self, test_number):
        '''
        Called before a test is started. Call super if overriden.

        :param test_number: current test number
        '''
        self.report = Report(self.name)
        self.report.add('start_time', time.time())
        self.test_number = test_number
예제 #7
0
파일: base.py 프로젝트: wflk/kitty
 def __init__(self, name, logger=None):
     '''
     :param name: name of the monitor
     :param logger: logger for the monitor (default: None)
     '''
     super(BaseMonitor, self).__init__(name, logger)
     self.report = Report(name)
     self.monitor_thread = None
     self.test_number = None
예제 #8
0
 def testClearSubReportEntry(self):
     entry_name = 'sub report'
     report = Report(self.report_name)
     subreport = Report(entry_name)
     report.add(entry_name, subreport)
     self.assertEqual(report.get(entry_name), subreport)
     report.clear()
     self.assertEqual(report.get(entry_name), None)
예제 #9
0
파일: base.py 프로젝트: unix1010/isf-1
 def pre_test(self, test_num):
     '''
     Called when a test is started
     '''
     self.test_number = test_num
     self.report = Report(self.name)
     if self.controller:
         self.controller.pre_test(test_number=self.test_number)
     for monitor in self.monitors:
         monitor.pre_test(test_number=self.test_number)
     self.report.add('test_number', test_num)
     self.report.add('state', 'STARTED')
예제 #10
0
 def testErrorInOneOfSubReportEntries(self):
     entry_name1 = 'sub report 1'
     entry_name2 = 'sub report 2'
     entry_name3 = 'sub report 3'
     report = Report(self.report_name)
     subreport1 = Report(entry_name1)
     subreport2 = Report(entry_name2)
     subreport3 = Report(entry_name3)
     report.add(entry_name1, subreport1)
     report.add(entry_name2, subreport2)
     report.add(entry_name3, subreport3)
     subreport2.error(self.error_reason)
     self.assertEqual(report.get_status(), Report.ERROR)
     self.assertEqual(report.get('reason'), self.error_reason)
예제 #11
0
파일: base.py 프로젝트: LucaBongiorni/kitty
class BaseController(KittyObject):
    '''
    Base class for controllers. Defines basic variables and implements basic behavior.
    '''

    def __init__(self, name, logger=None):
        '''
        :param name: name of the object
        :param logger: logger for the object (default: None)
        '''
        super(BaseController, self).__init__(name, logger)
        self.report = None
        self.test_number = 0

    def setup(self):
        '''
        Called at the beginning of the fuzzing session.
        You should override it with the actual implementation of victim setup.
        '''
        pass

    def teardown(self):
        '''
        Called at the end of the fuzzing session.
        You should override it with the actual implementation of victim teardown.
        '''
        pass

    def pre_test(self, test_number):
        '''
        Called before a test is started. Call super if overriden.

        :param test_number: current test number
        '''
        self.report = Report(self.name)
        self.report.add('start_time', time.time())
        self.test_number = test_number

    def post_test(self):
        '''
        Called when test is done. Call super if overriden.
        '''
        self.report.add('stop_time', time.time())

    def get_report(self):
        '''
        :rtype: :class:`~kitty.data.report.Report`
        :return: a report about the victim since last call to pre_test
        '''
        return self.report
예제 #12
0
class BaseController(KittyObject):
    '''
    Base class for controllers. Defines basic variables and implements basic behavior.
    '''
    def __init__(self, name, logger=None):
        '''
        :param name: name of the object
        :param logger: logger for the object (default: None)
        '''
        super(BaseController, self).__init__(name, logger)
        self.report = None
        self.test_number = 0

    def setup(self):
        '''
        Called at the beginning of the fuzzing session.
        You should override it with the actual implementation of victim setup.
        '''
        pass

    def teardown(self):
        '''
        Called at the end of the fuzzing session.
        You should override it with the actual implementation of victim teardown.
        '''
        pass

    def pre_test(self, test_number):
        '''
        Called before a test is started. Call super if overriden.

        :param test_number: current test number
        '''
        self.report = Report(self.name)
        self.report.add('start_time', time.time())
        self.test_number = test_number

    def post_test(self):
        '''
        Called when test is done. Call super if overriden.
        '''
        self.report.add('stop_time', time.time())

    def get_report(self):
        '''
        :rtype: :class:`~kitty.data.report.Report`
        :return: a report about the victim since last call to pre_test
        '''
        return self.report
예제 #13
0
 def pre_test(self, test_num):
     self.instrument.count_increment('pre_test')
     self.instrument.list_add('pre_test', test_num)
     self.config.set_func('pre_test')
     self.config.set_test(test_num)
     self.test_number = test_num
     self.report = Report(self.name)
예제 #14
0
 def get_report(self):
     '''
     need to wrap get_report, since we need to parse the report
     '''
     report_dict = self._meta_get_report()
     report = Report.from_dict(report_dict)
     return report
예제 #15
0
 def get_report(self):
     '''
     need to wrap get_report, since we need to parse the report
     '''
     report_dict = self._meta_get_report()
     report = Report.from_dict(report_dict)
     return report
예제 #16
0
 def testSuccess(self):
     '''
     .. note:: success was deprecated, and it only calls passed()
     '''
     report = Report(self.report_name)
     report.failed(self.failure_reason)
     self.assertEqual(report.get_status(), Report.FAILED)
     report.success()
     self.assertEqual(report.get_status(), Report.PASSED)
예제 #17
0
 def testDataEntryReplaced(self):
     report = Report(self.report_name)
     entry_name = 'my entry'
     entry_data = 'some data'
     report.add(entry_name, entry_data)
     self.assertEqual(report.get(entry_name), entry_data)
     new_data = 'some other data'
     report.add(entry_name, new_data)
     self.assertEqual(report.get(entry_name), new_data)
예제 #18
0
파일: base.py 프로젝트: LucaBongiorni/kitty
    def pre_test(self, test_number):
        '''
        Called before a test is started. Call super if overriden.

        :param test_number: current test number
        '''
        self.report = Report(self.name)
        self.report.add('start_time', time.time())
        self.test_number = test_number
예제 #19
0
파일: base.py 프로젝트: Fors3cDream/kitty
 def __init__(self, name, logger=None):
     '''
     :param name: name of the monitor
     :param logger: logger for the monitor (default: None)
     '''
     super(BaseMonitor, self).__init__(name, logger)
     self.report = Report(name)
     self.monitor_thread = None
     self.test_number = None
예제 #20
0
파일: actor.py 프로젝트: kevinhsu/kitty
    def pre_test(self, test_number):
        '''
        Called before a test is started. Call super if overriden.

        :param test_number: current test number
        '''
        self.test_number = test_number
        self.report = Report(self.name)
        self.report.add('start_time', time.time())
        self.report.add('test_number', self.test_number)
        self.report.add('state', 'pre_test')
        last_log = 0
        while not self.is_victim_alive():
            if time.time() - last_log >= 10:
                last_log = time.time()
                self.logger.warn('waiting for target to be alive')
            time.sleep(self.victim_alive_check_delay)
        if last_log > 0: # only if we logged that we're waiting, should we log that we're now alive
            self.logger.warn('target is now alive')
예제 #21
0
파일: base.py 프로젝트: cisco-sas/kitty
 def pre_test(self, test_num):
     """
     Called when a test is started
     """
     self.test_number = test_num
     self.report = Report(self.name)
     if self.controller:
         self.controller.pre_test(test_number=self.test_number)
     for monitor in self.monitors:
         monitor.pre_test(test_number=self.test_number)
     self.report.add("test_number", test_num)
     self.report.add("state", "STARTED")
예제 #22
0
파일: base.py 프로젝트: LucaBongiorni/kitty
 def pre_test(self, test_num):
     '''
     Called when a test is started
     '''
     self.test_number = test_num
     self.report = Report(self.name)
     if self.controller:
         self.controller.pre_test(test_number=self.test_number)
     for monitor in self.monitors:
         monitor.pre_test(test_number=self.test_number)
     self.report.add('test_number', test_num)
     self.report.add('state', 'STARTED')
예제 #23
0
파일: data_manager.py 프로젝트: wflk/kitty
    def get(self, test_id):
        '''
        get report by the test id

        :param test_id: test id
        :return: Report object
        '''
        self.select('*', 'test_id=?', [test_id])
        row = self._cursor.fetchone()
        if not row:
            raise KeyError('No report with test id %s in the DB' % test_id)

        values = self.row_to_dict(row)
        content = self._deserialize_dict(values['content'])
        return Report.from_dict(content)
예제 #24
0
    def get(self, test_id):
        '''
        get report by the test id

        :param test_id: test id
        :return: Report object
        '''
        self.select('*', 'test_id=?', [test_id])
        row = self._cursor.fetchone()
        if not row:
            raise KeyError('No report with test id %s in the DB' % test_id)

        values = self.row_to_dict(row)
        content = self._deserialize_dict(values['content'])
        return Report.from_dict(content)
예제 #25
0
 def testInvalidStatusRaisesException(self):
     report = Report(self.report_name)
     with self.assertRaises(Exception):
         report.set_status('custom status')
예제 #26
0
 def pre_test(self, test_num):
     self.config.set_func('pre_test')
     self.config.set_test(test_num)
     self.test_number = test_num
     self.report = Report(self.name)
예제 #27
0
class ClientFuzzer(BaseFuzzer):
    '''
    ClientFuzzer is designed for fuzzing clients.
    It does not preform an active fuzzing, but rather returns a mutation of a
    response when in the right state.
    It is designed to be a module that is integrated into different stacks.
    See its usage example in the file examples/client_fuzzer_example.py which
    designed to fuzz a browser.
    '''

    #  Wild card for matching any stage
    STAGE_ANY = '******************'

    def __init__(self, name='ClientFuzzer', logger=None, option_line=None):
        '''
        :param name: name of the object
        :param logger: logger for the object (default: None)
        :param option_line: cmd line options to the fuzzer
        '''
        super(ClientFuzzer, self).__init__(name, logger, option_line)
        self._target_control_thread = LoopFuncThread(self._do_trigger)
        self._trigger_stop_evt = Event()
        self._target_control_thread.set_func_stop_event(self._trigger_stop_evt)
        self._index_in_path = 0
        self._requested_stages = []
        self._report = None
        self._done_evt = Event()

    def _pre_test(self):
        self._requested_stages = []
        self._report = Report(self.get_name())
        super(ClientFuzzer, self)._pre_test()

    def is_done(self):
        '''
        check if fuzzer is done fuzzing

        :return: True if done
        '''
        return self._done_evt.is_set()

    def wait_until_done(self):
        '''
        wait until fuzzer is done
        '''
        self._done_evt.wait()

    def stop(self):
        '''
        Stop the fuzzing session
        '''
        self.logger.info('Stopping client fuzzer')
        self._target_control_thread.stop()
        self.target.signal_mutated()
        super(ClientFuzzer, self).stop()

    def _do_trigger(self):
        self.logger.debug('_do_trigger called')
        self._check_pause()
        if self._keep_running() and self.model.mutate():
            self._fuzz_path = self.model.get_sequence()
            self._index_in_path = 0
            self._pre_test()
            self._test_info()
            self.target.trigger()
            self._post_test()
        else:
            self._end_message()
            self._done_evt.set()
            self._trigger_stop_evt.wait()

    def _start(self):
        self._start_message()
        self.target.setup()
        self._target_control_thread.start()

    def _should_fuzz_node(self, fuzz_node, stage):
        '''
        The matching stage is either the name of the last node, or ClientFuzzer.STAGE_ANY.

        :return: True if we are in the correct model node
        '''
        if stage == ClientFuzzer.STAGE_ANY:
            return True
        if fuzz_node.name.lower() == stage.lower():
            if self._index_in_path == len(self._fuzz_path) - 1:
                return True
        else:
            return False

    def get_mutation(self, stage, data):
        '''
        Get the next mutation, if in the correct stage

        :param stage: current stage of the stack
        :param data: a dictionary of items to pass to the model
        :return: mutated payload if in apropriate stage, None otherwise
        '''
        payload = None
        # Commented out for now: we want to return the same
        # payload - while inside the same test
        # if self._keep_running() and self._do_fuzz.is_set():
        if self._keep_running():
            fuzz_node = self._fuzz_path[self._index_in_path].dst
            if self._should_fuzz_node(fuzz_node, stage):
                fuzz_node.set_session_data(data)
                payload = fuzz_node.render().tobytes()
                self._last_payload = payload
            else:
                self._index_in_path += 1
                if self._index_in_path >= len(self._fuzz_path):
                    self._index_in_path = 0
        if payload:
            self._notify_mutated()
        self._requested_stages.append((stage, payload))
        return payload

    def _notify_mutated(self):
        self.target.signal_mutated()

    def _get_report(self):
        base_report = super(ClientFuzzer, self)._get_report()
        stages, payloads = zip(*self._requested_stages)
        self._report.add('stages', stages)
        self._report.add('payloads', [None if payload is None else hexlify(payload) for payload in payloads])
        base_report.add('fuzzer', self._report)
        return base_report
예제 #28
0
    def transmit(self, payload):
        """
        This is the original transmit method from ServerTarget overwritten with
        special cases such as 40X or 50X according to the aim of the test.

        Accordin to https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/500
        500 Internal Server Error
        501 Not Implemented
        502 Bad Gateway
        503 Service Unavailable
        504 Gateway Timeout
        505 HTTP Version Not Supported
        506 Variant Also Negotiates
        507 Insufficient Storage
        508 Loop Detected
        510 Not Extended
        511 Network Authentication Required

        Original method docstring:
        Transmit single payload, and receive response, if expected.
        The actual implementation of the send/receive should be in
        ``_send_to_target`` and ``_receive_from_target``.

        :type payload: str
        :param payload: payload to send
        :rtype: str
        :return: the response (if received)
        """

        SERVER_50x_CODES = [
            '500 Internal Server Error', '501 Not Implemented',
            '502 Bad Gateway', '503 Service Unavailable',
            '504 Gateway Timeout', '505 HTTP Version Not Supported',
            '506 Variant Also Negotiates', '507 Insufficient Storage',
            '508 Loop Detected', '510 Not Extended',
            '511 Network Authentication Required'
        ]

        SERVER_40xCODES = [
            '400 Bad Request', '401 Unauthorized', '402 Payment Required',
            '403 Forbidden', '404 Not Found', '405 Method Not Allowed',
            '406 Not Acceptable', '407 Proxy Authentication Required',
            '408 Request Timeout', '409 Conflict', '410 Gone',
            '411 Length Required', '412 Precondition Failed',
            '413 Payload Too Large', '414 URI Too Long',
            '415 Unsupported Media Type', '416 Range Not Satisfiable',
            '417 Expectation Failed', '422 Unprocessable Entity',
            '425 Too Early', '426 Upgrade Required',
            '428 Precondition Required', '429 Too Many Requests',
            '431 Request Header Fields Too Large',
            '451 Unavailable For Legal Reasons'
        ]

        response = None
        trans_report_name = 'transmission_0x%04x' % self.transmission_count
        trans_report = Report(trans_report_name)
        self.transmission_report = trans_report
        self.report.add(trans_report_name, trans_report)
        try:
            trans_report.add('request (hex)', hexlify(payload).decode())
            trans_report.add('request (raw)', '%s' % payload)
            trans_report.add('request length', len(payload))
            trans_report.add('request time', time.time())

            request = hexlify(payload).decode()
            request = request if len(request) < 100 else (request[:100] +
                                                          ' ...')
            self.logger.info(f"request({len(payload)}): {request}")
            self.logger.debug(f"payload {payload}")
            self._send_to_target(payload)
            trans_report.success()

            if self.expect_response:
                try:
                    response = self._receive_from_target()
                    trans_report.add('response time', time.time())
                    trans_report.add('response (hex)',
                                     hexlify(response).decode())
                    trans_report.add('response (raw)', '%s' % response)
                    trans_report.add('response length', len(response))
                    trans_report.add('Session ID', str(self._uuid))
                    printed_response = hexlify(response).decode()
                    printed_response = printed_response if len(
                        printed_response) < 100 else (printed_response[:100] +
                                                      ' ...')
                    self.logger.info(
                        f"response({len(response)}): {printed_response}")

                    string_response = response.decode('utf-8')
                    response_code_string = string_response.splitlines()[0]
                    response_code = response_code_string.replace(
                        'HTTP/1.1 ', '')

                    if response_code in SERVER_40xCODES or response_code in SERVER_50x_CODES:
                        self.logger.info(
                            f"response failure {response.decode('utf-8')}")
                        trans_report.failed('Failure in HTTP-PROTO response.')
                        trans_report.add('Response', response.decode('utf-8'))
                        self.report.set_status('failed')
                        self.receive_failure = True

                except Exception as ex2:
                    trans_report.failed('failed to receive response: %s' % ex2)
                    trans_report.add('traceback', traceback.format_exc())
                    self.logger.error(
                        f"target.transmit - failure in receive (exception: {ex2})"
                    )
                    self.logger.error(traceback.format_exc())
                    self.receive_failure = True
            else:
                response = ''
        except Exception as ex1:
            #trans_report.failed('failed to send payload: %s' % ex1)
            #trans_report.add('traceback', traceback.format_exc())
            self.logger.error(
                f"target.transmit - failure in send (exception: {ex1})")
            self.logger.error(traceback.format_exc())
            #self.send_failure = True
        self.transmission_count += 1
        return response
예제 #29
0
파일: client.py 프로젝트: unix1010/isf-1
 def _pre_test(self):
     self._requested_stages = []
     self._report = Report(self.get_name())
     super(ClientFuzzer, self)._pre_test()
예제 #30
0
 def testClearKeepsName(self):
     report = Report(self.report_name)
     self.assertEqual(report.get_name(), self.report_name)
     report.clear()
     self.assertEqual(report.get_name(), self.report_name)
예제 #31
0
 def testClearRestoresStatusToDefaultPassed(self):
     report = Report(self.report_name)
     self.assertEqual(report.get_status(), Report.PASSED)
     report.failed('mock failure')
     report.clear()
     self.assertEqual(report.get_status(), Report.PASSED)
예제 #32
0
 def testDefaultStatusIsPassed(self):
     report = Report(self.report_name)
     self.assertEqual(report.get_status(), Report.PASSED)
예제 #33
0
 def _pre_test(self):
     self._requested_stages = []
     self._report = Report(self.get_name())
     super(ClientFuzzer, self)._pre_test()
예제 #34
0
 def testStatusIsFailedByConstructor(self):
     report = Report(self.report_name, default_failed=True)
     self.assertEqual(report.get_status(), Report.FAILED)
예제 #35
0
파일: base.py 프로젝트: wflk/kitty
class BaseMonitor(KittyObject):
    '''
    Base (abstract) monitor class
    '''
    def __init__(self, name, logger=None):
        '''
        :param name: name of the monitor
        :param logger: logger for the monitor (default: None)
        '''
        super(BaseMonitor, self).__init__(name, logger)
        self.report = Report(name)
        self.monitor_thread = None
        self.test_number = None

    def setup(self):
        '''
        Make sure the monitor is ready for fuzzing
        '''
        self._cleanup()
        self.monitor_thread = LoopFuncThread(self._monitor_func)
        self.monitor_thread.start()

    def teardown(self):
        '''
        cleanup the monitor data and
        '''
        self.monitor_thread.stop()
        self.monitor_thread = None

    def pre_test(self, test_number):
        '''
        Called when a test is started

        :param test_number: current test number
        '''
        if not self._is_alive():
            self.setup()
        self._cleanup()
        self.test_number = test_number
        self.report.add('state', 'STARTED')
        self.report.add('start_time', time.time())
        self.report.add('name', self.name)

    def post_test(self):
        '''
        Called when a test is completed, prepare the report etc.
        '''
        self.report.add('state', 'STOPPED')
        self.report.add('stop_time', time.time())

    def _is_alive(self):
        '''
        Check if victim/monitor alive
        '''
        if self.monitor_thread is not None:
            if self.monitor_thread.is_alive():
                return True
        return False

    def _cleanup(self):
        '''
        perform a monitor cleanup
        '''
        self.report = Report(self.name)

    def get_report(self):
        '''
        :return: the monitor's report
        '''
        return self.report

    def _monitor_func(self):
        '''
        Called in a loop in a separate thread (self.monitor_thread).
        '''
        self.not_implemented('_monitor_func')
예제 #36
0
 def testFailedWithoutReason(self):
     report = Report(self.report_name)
     self.assertEqual(report.get_status(), Report.PASSED)
     report.failed()
     self.assertEqual(report.get_status(), Report.FAILED)
     self.assertEqual(report.get('reason'), None)
예제 #37
0
파일: base.py 프로젝트: wflk/kitty
 def _cleanup(self):
     '''
     perform a monitor cleanup
     '''
     self.report = Report(self.name)
예제 #38
0
 def testErrorWithoutReason(self):
     report = Report(self.report_name)
     self.assertEqual(report.get_status(), Report.PASSED)
     report.error()
     self.assertEqual(report.get_status(), Report.ERROR)
     self.assertEqual(report.get('reason'), None)
예제 #39
0
파일: base.py 프로젝트: unix1010/isf-1
class BaseTarget(KittyObject):
    '''
    BaseTarget contains the common logic and behaviour of all target.
    '''
    def __init__(self, name='BaseTarget', logger=None):
        super(BaseTarget, self).__init__(name, logger)
        self.controller = None
        self.monitors = []
        self.report = Report(name)
        self.test_number = None
        self.fuzzer = None
        self.session_data = {}

    def set_fuzzer(self, fuzzer):
        self.fuzzer = fuzzer

    def set_controller(self, controller):
        '''
        Set a controller
        '''
        self.controller = controller

    def add_monitor(self, monitor):
        '''
        Add a monitor
        '''
        self.monitors.append(monitor)

    def setup(self):
        '''
        Make sure the target is ready for fuzzing, including monitors and
        controllers
        '''
        if self.controller:
            self.controller.setup()
        for monitor in self.monitors:
            monitor.setup()

    def teardown(self):
        '''
        Clean up the target once all tests are completed
        '''
        if self.controller:
            self.controller.teardown()
        for monitor in self.monitors:
            monitor.teardown()

    def pre_test(self, test_num):
        '''
        Called when a test is started
        '''
        self.test_number = test_num
        self.report = Report(self.name)
        if self.controller:
            self.controller.pre_test(test_number=self.test_number)
        for monitor in self.monitors:
            monitor.pre_test(test_number=self.test_number)
        self.report.add('test_number', test_num)
        self.report.add('state', 'STARTED')

    def post_test(self, test_num):
        '''
        Called when test is completed, a report should be prepared now
        '''
        if self.controller:
            self.controller.post_test()
        for monitor in self.monitors:
            monitor.post_test()
        self.report.add('state', 'COMPLETED')
        if self.controller:
            controller_report = self.controller.get_report()
            self.report.add('controller', controller_report)
        for monitor in self.monitors:
            current_report = monitor.get_report()
            self.report.add(current_report.get('name'), current_report)
        status = self.report.get_status()
        reason = self.report.get('reason')
        if status != Report.PASSED:
            self.logger.warning('Test %d status: %s' % (test_num, status))
            self.logger.warning('Reason: %s' % (reason))

    def get_report(self):
        return self.report

    def get_session_data(self):
        '''
        Session related data dictionary to be used by data model.

        :return: dictionary (str, bytes)
        '''
        return self.session_data
예제 #40
0
 def testPassed(self):
     report = Report(self.report_name)
     report.failed(self.failure_reason)
     self.assertEqual(report.get_status(), Report.FAILED)
     report.passed()
     self.assertEqual(report.get_status(), Report.PASSED)
예제 #41
0
파일: client.py 프로젝트: unix1010/isf-1
class ClientFuzzer(BaseFuzzer):
    '''
    ClientFuzzer is designed for fuzzing clients.
    It does not preform an active fuzzing, but rather returns a mutation of a
    response when in the right state.
    It is designed to be a module that is integrated into different stacks.

    You can see its usahe examples in the following places:

        - examples/02_client_fuzzer_browser_remote
        - examples/03_client_fuzzer_browser
    '''

    #  Wild card for matching any stage
    STAGE_ANY = '******************'

    def __init__(self, name='ClientFuzzer', logger=None, option_line=None):
        '''
        :param name: name of the object
        :param logger: logger for the object (default: None)
        :param option_line: cmd line options to the fuzzer
        '''
        super(ClientFuzzer, self).__init__(name, logger, option_line)
        self._target_control_thread = LoopFuncThread(self._do_trigger)
        self._trigger_stop_evt = Event()
        self._target_control_thread.set_func_stop_event(self._trigger_stop_evt)
        self._index_in_path = 0
        self._requested_stages = []
        self._report = None
        self._done_evt = Event()

    def _pre_test(self):
        self._requested_stages = []
        self._report = Report(self.get_name())
        super(ClientFuzzer, self)._pre_test()

    def is_done(self):
        '''
        check if fuzzer is done fuzzing

        :return: True if done
        '''
        return self._done_evt.is_set()

    def wait_until_done(self):
        '''
        wait until fuzzer is done
        '''
        self._done_evt.wait()

    def stop(self):
        '''
        Stop the fuzzing session
        '''
        self.logger.info('Stopping client fuzzer')
        self._target_control_thread.stop()
        self.target.signal_mutated()
        super(ClientFuzzer, self).stop()

    def _do_trigger(self):
        self.logger.debug('_do_trigger called')
        self._check_pause()
        if self._next_mutation():
            self._fuzz_path = self.model.get_sequence()
            self._index_in_path = 0
            self._pre_test()
            self._test_info()
            self.target.trigger()
            self._post_test()
        else:
            self._end_message()
            self._done_evt.set()
            self._trigger_stop_evt.wait()

    def _start(self):
        self._target_control_thread.start()

    def _test_environment(self):
        '''
        .. todo:: can we do that here somehow?
        '''
        pass

    def _should_fuzz_node(self, fuzz_node, stage):
        '''
        The matching stage is either the name of the last node, or ClientFuzzer.STAGE_ANY.

        :return: True if we are in the correct model node
        '''
        if stage == ClientFuzzer.STAGE_ANY:
            return True
        if fuzz_node.name.lower() == stage.lower():
            if self._index_in_path == len(self._fuzz_path) - 1:
                return True
        else:
            return False

    def _update_path_index(self, stage):
        last_index_in_path = len(self._fuzz_path) - 1
        if self._index_in_path < last_index_in_path:
            node = self._fuzz_path[self._index_in_path].dst
            if node.name.lower() == stage.lower():
                self._index_in_path += 1

    def get_mutation(self, stage, data):
        '''
        Get the next mutation, if in the correct stage

        :param stage: current stage of the stack
        :param data: a dictionary of items to pass to the model
        :return: mutated payload if in apropriate stage, None otherwise
        '''
        payload = None
        # Commented out for now: we want to return the same
        # payload - while inside the same test
        # if self._keep_running() and self._do_fuzz.is_set():
        if self._keep_running():
            fuzz_node = self._fuzz_path[self._index_in_path].dst
            if self._should_fuzz_node(fuzz_node, stage):
                fuzz_node.set_session_data(data)
                payload = fuzz_node.render().tobytes()
                self._last_payload = payload
            else:
                self._update_path_index(stage)
        if payload:
            self._notify_mutated()
        self._requested_stages.append((stage, payload))
        return payload

    def _notify_mutated(self):
        self.target.signal_mutated()

    def _get_report(self):
        base_report = super(ClientFuzzer, self)._get_report()
        if len(self._requested_stages):
            stages, payloads = zip(*self._requested_stages)
        else:
            stages = []
            payloads = []
        self._report.add('stages', stages)
        self._report.add('payloads', [
            None if payload is None else hexlify(payload)
            for payload in payloads
        ])
        base_report.add('fuzzer', self._report)
        return base_report
예제 #42
0
 def testAddReservedKeywordRaisesException_failed(self):
     report = Report(self.report_name)
     with self.assertRaises(Exception):
         report.add('failed', 'some status')
예제 #43
0
파일: base.py 프로젝트: LucaBongiorni/kitty
    def _store_report(self, report):
        self.logger.debug('<in>')
        report.add('test_number', self.model.current_index())
        report.add('fuzz_path', self.model.get_sequence_str())
        test_info = self.model.get_test_info()
        data_model_report = Report(name='Data Model')
        for k, v in test_info.items():
            data_model_report.add(k, v)
        report.add(data_model_report.get_name(), data_model_report)
        payload = self._last_payload
        if payload is not None:
            data_report = Report('payload')
            data_report.add('raw', payload)
            data_report.add('hex', payload.encode('hex'))
            data_report.add('length', len(payload))
            report.add('payload', data_report)
        else:
            report.add('payload', None)

        self.dataman.store_report(report, self.model.current_index())
        self.dataman.get_report_by_id(self.model.current_index())
예제 #44
0
 def testDeprecatedApi_is_failed(self):
     report = Report(self.report_name)
     with self.assertRaises(NotImplementedError):
         report.is_failed()
예제 #45
0
    def _store_report(self, report):
        self.logger.debug('<in>')
        report.add('test_number', self.model.current_index())
        report.add('fuzz_path', self.model.get_sequence_str())
        test_info = self.model.get_test_info()
        data_model_report = Report(name='Data Model')
        for k, v in test_info.items():
            new_entries = _flatten_dict_entry(k, v)
            for (k_, v_) in new_entries:
                data_model_report.add(k_, v_)
        report.add(data_model_report.get_name(), data_model_report)
        payload = self._last_payload
        if payload is not None:
            data_report = Report('payload')
            data_report.add('raw', payload)
            try:
                data_report.add('hex', json.dumps(str(payload)).encode('hex'))
            except UnicodeDecodeError:
                print('cant serialize payload: %', payload)
            data_report.add('length', len(payload))
            report.add('payload', data_report)
        else:
            report.add('payload', None)

        self.dataman.store_report(report, self.model.current_index())
        self.dataman.get_report_by_id(self.model.current_index())
예제 #46
0
 def testReportName(self):
     report = Report(self.report_name)
     self.assertEqual(report.get_name(), self.report_name)