oss-fuzz-gen and circinus
These are competitors—both use LLMs to automatically generate fuzz test cases, with oss-fuzz-gen targeting OSS-Fuzz infrastructure while circinus appears to be a standalone fuzzer implementation, making them alternative approaches to the same problem.
About oss-fuzz-gen
google/oss-fuzz-gen
LLM powered fuzzing via OSS-Fuzz.
Generates fuzz targets across C/C++, Java, and Python by prompting multiple LLMs (Vertex AI, Gemini, GPT-4) to synthesize harnesses, then evaluates them against OSS-Fuzz infrastructure using metrics like compilability, crash detection, and coverage gain versus human-written targets. The framework discovered 30+ real vulnerabilities including CVE-2024-9143 in OpenSSL, demonstrating LLM-generated targets can achieve up to 29% additional line coverage on production projects.
About circinus
PrVrSs/circinus
LLM-powered generation-based fuzzer.
Related comparisons
Scores updated daily from GitHub, PyPI, and npm data. How scores work