Advanced Browser Vulnerability Research
Browser Vulnerability Research Framework
A programmable framework for researcher-guided automation, scalable execution, and proprietary research workflows.
Browser Vulnerability
Research Framework
A programmable framework for researcher-guided automation, scalable execution, and proprietary research workflows.
From The Blog
Is This Valid JavaScript? Let's analyze this JavaScript program: It looks like strange and unusual code, which raises some interesting questions: Is it valid JavaScript code? How many structures are there here? What possibilities and restrictions do[...]
Introduction Coverage-guided fuzzing is designed to find new execution paths. In targeted vulnerability research, however, we may already know which part of the JavaScript engine we want to explore. A previous vulnerability, a suspicious commit, or a source-code[...]
Finding the Unexpected The basic idea behind a JavaScript engine fuzzer is very simple: generate programs that the engine does not expect to execute. The difficult part is defining what unexpected actually means. V8, JavaScriptCore, and SpiderMonkey[...]
Tashita Software Security develops technology for vulnerability research. Our capabilities enable organizations to discover unique, high-impact vulnerabilities in the world’s most widely used software — through research platforms and specialized security expertise.
Our technology is backed by real-world results, including vulnerabilities discovered in Google Chrome, Apple Safari, and WebKit.



