Skip to content

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer - #131075

Merged
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers
Jul 20, 2026
Merged

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer#131075
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers

Conversation

@MihaZupan

Copy link
Copy Markdown
Member

Deletes the fuzzers added as part of #122093 (comment).

These neither build (via run.bat because of missing corpus file), neither run at all with a TypeInitializationException, so I get the impression they were never tested/ran.
Removing to unblock fuzzing for other projects.

For future reference, please don't commit new fuzzers that you haven't tested locally. It's highly unlikely you/your AI agent got them right immediately on the first try, without a single assert out of place.

@MihaZupanMihaZupan added this to the 11.0.0 milestone Jul 20, 2026
@MihaZupan
MihaZupan requested a review from a teamJuly 20, 2026 12:11
@MihaZupanMihaZupan self-assigned this Jul 20, 2026
CopilotAI review requested due to automatic review settings July 20, 2026 12:11
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
Successfully started running 5 pipeline(s).
11 pipeline(s) were filtered out due to trigger conditions.
There may be pipelines that require an authorized user to comment /azp run to run.

@dotnet-policy-service

Copy link
Copy Markdown
Contributor

Tagging subscribers to this area: @karelz, @dotnet/area-system-io-compression
See info in area-owners.md if you want to be subscribed.

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR removes two broken fuzzing harnesses from the DotnetFuzzing project and updates the OneFuzz deployment pipeline accordingly, reducing noise/failures and unblocking fuzzing runs for other targets.

Changes:

  • Delete WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer from src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/.
  • Remove the corresponding OneFuzz deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

FileDescription
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ZipCryptoStreamFuzzer.csRemoves the ZipCrypto stream fuzzer harness (file deleted).
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/WinZipAesStreamFuzzer.csRemoves the WinZip AES stream fuzzer harness (file deleted).
eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.ymlStops deploying the removed fuzzers to OneFuzz.

@alinpahontu2912alinpahontu2912 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sorry, will take a look. Approving to unblock

@github-actions

github-actionsBot commented Jul 20, 2026

Copy link
Copy Markdown
Contributor

Workflow state for the Holistic Review Orchestrator.

{
"version": 5,
"last_dispatched_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_dispatched_base_ref": "main",
"last_dispatched_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_reviewed_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_reviewed_base_ref": "main",
"last_reviewed_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_recorded_worker_run_id": "29744573407",
"review_attempt_commit": "",
"review_attempt_base_ref": "",
"review_attempt_count": 0,
"max_review_attempts": 5,
"review_history_format": "holistic-review-disclosure-v1",
"review_history": [
{
"commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"review_id": 4735261986
}
]
}

@MihaZupan
MihaZupan enabled auto-merge (squash) July 20, 2026 13:12

@github-actionsgithub-actionsBot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Holistic Review

Motivation: The PR reverts two fuzzers (WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer) added in #122093. Per the description, these never built via run.bat (missing corpus file) and threw TypeInitializationException at runtime, so they were effectively non-functional and were blocking the fuzzing pipeline for other projects.

Approach: The change deletes the two fuzzer source files under src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ and removes their corresponding onefuzz-task@0 deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml. This is a straightforward, deletion-only revert (0 additions, 314 deletions).

Summary: The revert is clean and complete. Fuzzers are discovered by reflection in Program.cs (types implementing IFuzzer), so deleting the source files fully deregisters them without any manual list to update. I confirmed no remaining references to WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer, or their corpus names (winzipaesstream, zipcryptostream) exist at the head commit, and the two YAML deployment steps that referenced them were removed while the surrounding tasks (e.g., Utf8JsonWriterFuzzer, ZipArchiveFuzzer) remain intact and correctly bracketed by the ONEFUZZ_TASK_WORKAROUND markers. Removing non-functional fuzzers to unblock the pipeline is reasonable and low-risk. No concerns; LGTM.

Note

This review was generated by this repository's Holistic Review agentic workflow to complement the built-in Copilot review.

Generated by Holistic Review · 36.9 AIC · ⌖ 9.64 AIC · ⊞ 10K

@MihaZupan
MihaZupan merged commit dd53711 into dotnet:mainJul 20, 2026
131 checks passed
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Aug 23, 2026
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@MihaZupan@alinpahontu2912
, 'i'); if (__m === '*' || __re.test(location.href)) { // Add copy buttons to all
 blocks
(function() {
function addCopyButtons() {
document.querySelectorAll('pre code').forEach(function(codeBlock) {
if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;
codeBlock.parentElement.setAttribute('data-copy-added', 'true');
var btn = document.createElement('button');
btn.textContent = 'Copy';
btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';
btn.onmouseover = function() { this.style.opacity = '1'; };
btn.onmouseout = function() { this.style.opacity = '0.7'; };
btn.onclick = function() {
navigator.clipboard.writeText(codeBlock.textContent).then(function() {
btn.textContent = 'Copied!';
setTimeout(function() { btn.textContent = 'Copy'; }, 1500);
});
};
codeBlock.parentElement.style.position = 'relative';
codeBlock.parentElement.appendChild(btn);
});
}
addCopyButtons();
// Re-run on dynamic content
var observer = new MutationObserver(addCopyButtons);
observer.observe(document.body, { childList: true, subtree: true });
})();
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer by MihaZupan · Pull Request #131075 · dotnet/runtime · GitHub
Skip to content

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer - #131075

Merged
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers
Jul 20, 2026
Merged

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer#131075
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers

Conversation

@MihaZupan

Copy link
Copy Markdown
Member

Deletes the fuzzers added as part of #122093 (comment).

These neither build (via run.bat because of missing corpus file), neither run at all with a TypeInitializationException, so I get the impression they were never tested/ran.
Removing to unblock fuzzing for other projects.

For future reference, please don't commit new fuzzers that you haven't tested locally. It's highly unlikely you/your AI agent got them right immediately on the first try, without a single assert out of place.

@MihaZupanMihaZupan added this to the 11.0.0 milestone Jul 20, 2026
@MihaZupan
MihaZupan requested a review from a teamJuly 20, 2026 12:11
@MihaZupanMihaZupan self-assigned this Jul 20, 2026
CopilotAI review requested due to automatic review settings July 20, 2026 12:11
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
Successfully started running 5 pipeline(s).
11 pipeline(s) were filtered out due to trigger conditions.
There may be pipelines that require an authorized user to comment /azp run to run.

@dotnet-policy-service

Copy link
Copy Markdown
Contributor

Tagging subscribers to this area: @karelz, @dotnet/area-system-io-compression
See info in area-owners.md if you want to be subscribed.

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR removes two broken fuzzing harnesses from the DotnetFuzzing project and updates the OneFuzz deployment pipeline accordingly, reducing noise/failures and unblocking fuzzing runs for other targets.

Changes:

  • Delete WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer from src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/.
  • Remove the corresponding OneFuzz deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

FileDescription
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ZipCryptoStreamFuzzer.csRemoves the ZipCrypto stream fuzzer harness (file deleted).
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/WinZipAesStreamFuzzer.csRemoves the WinZip AES stream fuzzer harness (file deleted).
eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.ymlStops deploying the removed fuzzers to OneFuzz.

@alinpahontu2912alinpahontu2912 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sorry, will take a look. Approving to unblock

@github-actions

github-actionsBot commented Jul 20, 2026

Copy link
Copy Markdown
Contributor

Workflow state for the Holistic Review Orchestrator.

{
"version": 5,
"last_dispatched_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_dispatched_base_ref": "main",
"last_dispatched_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_reviewed_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_reviewed_base_ref": "main",
"last_reviewed_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_recorded_worker_run_id": "29744573407",
"review_attempt_commit": "",
"review_attempt_base_ref": "",
"review_attempt_count": 0,
"max_review_attempts": 5,
"review_history_format": "holistic-review-disclosure-v1",
"review_history": [
{
"commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"review_id": 4735261986
}
]
}

@MihaZupan
MihaZupan enabled auto-merge (squash) July 20, 2026 13:12

@github-actionsgithub-actionsBot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Holistic Review

Motivation: The PR reverts two fuzzers (WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer) added in #122093. Per the description, these never built via run.bat (missing corpus file) and threw TypeInitializationException at runtime, so they were effectively non-functional and were blocking the fuzzing pipeline for other projects.

Approach: The change deletes the two fuzzer source files under src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ and removes their corresponding onefuzz-task@0 deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml. This is a straightforward, deletion-only revert (0 additions, 314 deletions).

Summary: The revert is clean and complete. Fuzzers are discovered by reflection in Program.cs (types implementing IFuzzer), so deleting the source files fully deregisters them without any manual list to update. I confirmed no remaining references to WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer, or their corpus names (winzipaesstream, zipcryptostream) exist at the head commit, and the two YAML deployment steps that referenced them were removed while the surrounding tasks (e.g., Utf8JsonWriterFuzzer, ZipArchiveFuzzer) remain intact and correctly bracketed by the ONEFUZZ_TASK_WORKAROUND markers. Removing non-functional fuzzers to unblock the pipeline is reasonable and low-risk. No concerns; LGTM.

Note

This review was generated by this repository's Holistic Review agentic workflow to complement the built-in Copilot review.

Generated by Holistic Review · 36.9 AIC · ⌖ 9.64 AIC · ⊞ 10K

@MihaZupan
MihaZupan merged commit dd53711 into dotnet:mainJul 20, 2026
131 checks passed
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Aug 23, 2026
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@MihaZupan@alinpahontu2912
, 'i'); if (__m === '*' || __re.test(location.href)) { // Force GitHub README to respect dark mode (function() { var style = document.createElement('style'); style.textContent = ' .markdown-body { color-scheme: dark light; } .markdown-body pre { background: #161b22 !important; } .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; } .markdown-body table th, .markdown-body table td { border-color: #30363d !important; } .markdown-body img { background: #0d1117; } .markdown-body blockquote { border-left-color: #8b949e; } .markdown-body hr { border-color: #30363d; } '; document.head.appendChild(style); })(); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer by MihaZupan · Pull Request #131075 · dotnet/runtime · GitHub
Skip to content

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer - #131075

Merged
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers
Jul 20, 2026
Merged

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer#131075
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers

Conversation

@MihaZupan

Copy link
Copy Markdown
Member

Deletes the fuzzers added as part of #122093 (comment).

These neither build (via run.bat because of missing corpus file), neither run at all with a TypeInitializationException, so I get the impression they were never tested/ran.
Removing to unblock fuzzing for other projects.

For future reference, please don't commit new fuzzers that you haven't tested locally. It's highly unlikely you/your AI agent got them right immediately on the first try, without a single assert out of place.

@MihaZupanMihaZupan added this to the 11.0.0 milestone Jul 20, 2026
@MihaZupan
MihaZupan requested a review from a teamJuly 20, 2026 12:11
@MihaZupanMihaZupan self-assigned this Jul 20, 2026
CopilotAI review requested due to automatic review settings July 20, 2026 12:11
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
Successfully started running 5 pipeline(s).
11 pipeline(s) were filtered out due to trigger conditions.
There may be pipelines that require an authorized user to comment /azp run to run.

@dotnet-policy-service

Copy link
Copy Markdown
Contributor

Tagging subscribers to this area: @karelz, @dotnet/area-system-io-compression
See info in area-owners.md if you want to be subscribed.

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR removes two broken fuzzing harnesses from the DotnetFuzzing project and updates the OneFuzz deployment pipeline accordingly, reducing noise/failures and unblocking fuzzing runs for other targets.

Changes:

  • Delete WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer from src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/.
  • Remove the corresponding OneFuzz deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

FileDescription
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ZipCryptoStreamFuzzer.csRemoves the ZipCrypto stream fuzzer harness (file deleted).
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/WinZipAesStreamFuzzer.csRemoves the WinZip AES stream fuzzer harness (file deleted).
eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.ymlStops deploying the removed fuzzers to OneFuzz.

@alinpahontu2912alinpahontu2912 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sorry, will take a look. Approving to unblock

@github-actions

github-actionsBot commented Jul 20, 2026

Copy link
Copy Markdown
Contributor

Workflow state for the Holistic Review Orchestrator.

{
"version": 5,
"last_dispatched_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_dispatched_base_ref": "main",
"last_dispatched_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_reviewed_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_reviewed_base_ref": "main",
"last_reviewed_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_recorded_worker_run_id": "29744573407",
"review_attempt_commit": "",
"review_attempt_base_ref": "",
"review_attempt_count": 0,
"max_review_attempts": 5,
"review_history_format": "holistic-review-disclosure-v1",
"review_history": [
{
"commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"review_id": 4735261986
}
]
}

@MihaZupan
MihaZupan enabled auto-merge (squash) July 20, 2026 13:12

@github-actionsgithub-actionsBot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Holistic Review

Motivation: The PR reverts two fuzzers (WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer) added in #122093. Per the description, these never built via run.bat (missing corpus file) and threw TypeInitializationException at runtime, so they were effectively non-functional and were blocking the fuzzing pipeline for other projects.

Approach: The change deletes the two fuzzer source files under src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ and removes their corresponding onefuzz-task@0 deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml. This is a straightforward, deletion-only revert (0 additions, 314 deletions).

Summary: The revert is clean and complete. Fuzzers are discovered by reflection in Program.cs (types implementing IFuzzer), so deleting the source files fully deregisters them without any manual list to update. I confirmed no remaining references to WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer, or their corpus names (winzipaesstream, zipcryptostream) exist at the head commit, and the two YAML deployment steps that referenced them were removed while the surrounding tasks (e.g., Utf8JsonWriterFuzzer, ZipArchiveFuzzer) remain intact and correctly bracketed by the ONEFUZZ_TASK_WORKAROUND markers. Removing non-functional fuzzers to unblock the pipeline is reasonable and low-risk. No concerns; LGTM.

Note

This review was generated by this repository's Holistic Review agentic workflow to complement the built-in Copilot review.

Generated by Holistic Review · 36.9 AIC · ⌖ 9.64 AIC · ⊞ 10K

@MihaZupan
MihaZupan merged commit dd53711 into dotnet:mainJul 20, 2026
131 checks passed
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Aug 23, 2026
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@MihaZupan@alinpahontu2912
, 'i'); if (__m === '*' || __re.test(location.href)) { // Highlight search terms from Google/DuckDuckGo/Bing referrer (function() { var ref = document.referrer; var terms = []; if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) { var url = new URL(ref); var q = url.searchParams.get('q') || url.searchParams.get('p'); if (q) { terms = q.split(/\s+/).filter(function(t) { return t.length > 2; }); } } if (terms.length === 0) return; var style = document.createElement('style'); style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }'; document.head.appendChild(style); function highlight(node) { if (node.nodeType === 3) { // text node var text = node.textContent; var found = false; terms.forEach(function(term) { var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\]\\]/g, '\\') + ')', 'gi'); if (regex.test(text)) { found = true; var frag = document.createDocumentFragment(); var parts = text.split(regex); parts.forEach(function(part, i) { if (i % 2 === 0) { frag.appendChild(document.createTextNode(part)); } else { var span = document.createElement('span'); span.className = 'userscript-highlight'; span.textContent = part; frag.appendChild(span); } }); node.parentNode.replaceChild(frag, node); } }); } else if (node.nodeType === 1 && node.childNodes) { // element var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT']; if (!skipTags.includes(node.tagName)) { Array.from(node.childNodes).forEach(highlight); } } } highlight(document.body); // Re-highlight on dynamic content var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1 || node.nodeType === 3) highlight(node); }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer by MihaZupan · Pull Request #131075 · dotnet/runtime · GitHub
Skip to content

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer - #131075

Merged
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers
Jul 20, 2026
Merged

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer#131075
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers

Conversation

@MihaZupan

Copy link
Copy Markdown
Member

Deletes the fuzzers added as part of #122093 (comment).

These neither build (via run.bat because of missing corpus file), neither run at all with a TypeInitializationException, so I get the impression they were never tested/ran.
Removing to unblock fuzzing for other projects.

For future reference, please don't commit new fuzzers that you haven't tested locally. It's highly unlikely you/your AI agent got them right immediately on the first try, without a single assert out of place.

@MihaZupanMihaZupan added this to the 11.0.0 milestone Jul 20, 2026
@MihaZupan
MihaZupan requested a review from a teamJuly 20, 2026 12:11
@MihaZupanMihaZupan self-assigned this Jul 20, 2026
CopilotAI review requested due to automatic review settings July 20, 2026 12:11
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
Successfully started running 5 pipeline(s).
11 pipeline(s) were filtered out due to trigger conditions.
There may be pipelines that require an authorized user to comment /azp run to run.

@dotnet-policy-service

Copy link
Copy Markdown
Contributor

Tagging subscribers to this area: @karelz, @dotnet/area-system-io-compression
See info in area-owners.md if you want to be subscribed.

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR removes two broken fuzzing harnesses from the DotnetFuzzing project and updates the OneFuzz deployment pipeline accordingly, reducing noise/failures and unblocking fuzzing runs for other targets.

Changes:

  • Delete WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer from src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/.
  • Remove the corresponding OneFuzz deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

FileDescription
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ZipCryptoStreamFuzzer.csRemoves the ZipCrypto stream fuzzer harness (file deleted).
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/WinZipAesStreamFuzzer.csRemoves the WinZip AES stream fuzzer harness (file deleted).
eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.ymlStops deploying the removed fuzzers to OneFuzz.

@alinpahontu2912alinpahontu2912 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sorry, will take a look. Approving to unblock

@github-actions

github-actionsBot commented Jul 20, 2026

Copy link
Copy Markdown
Contributor

Workflow state for the Holistic Review Orchestrator.

{
"version": 5,
"last_dispatched_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_dispatched_base_ref": "main",
"last_dispatched_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_reviewed_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_reviewed_base_ref": "main",
"last_reviewed_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_recorded_worker_run_id": "29744573407",
"review_attempt_commit": "",
"review_attempt_base_ref": "",
"review_attempt_count": 0,
"max_review_attempts": 5,
"review_history_format": "holistic-review-disclosure-v1",
"review_history": [
{
"commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"review_id": 4735261986
}
]
}

@MihaZupan
MihaZupan enabled auto-merge (squash) July 20, 2026 13:12

@github-actionsgithub-actionsBot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Holistic Review

Motivation: The PR reverts two fuzzers (WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer) added in #122093. Per the description, these never built via run.bat (missing corpus file) and threw TypeInitializationException at runtime, so they were effectively non-functional and were blocking the fuzzing pipeline for other projects.

Approach: The change deletes the two fuzzer source files under src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ and removes their corresponding onefuzz-task@0 deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml. This is a straightforward, deletion-only revert (0 additions, 314 deletions).

Summary: The revert is clean and complete. Fuzzers are discovered by reflection in Program.cs (types implementing IFuzzer), so deleting the source files fully deregisters them without any manual list to update. I confirmed no remaining references to WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer, or their corpus names (winzipaesstream, zipcryptostream) exist at the head commit, and the two YAML deployment steps that referenced them were removed while the surrounding tasks (e.g., Utf8JsonWriterFuzzer, ZipArchiveFuzzer) remain intact and correctly bracketed by the ONEFUZZ_TASK_WORKAROUND markers. Removing non-functional fuzzers to unblock the pipeline is reasonable and low-risk. No concerns; LGTM.

Note

This review was generated by this repository's Holistic Review agentic workflow to complement the built-in Copilot review.

Generated by Holistic Review · 36.9 AIC · ⌖ 9.64 AIC · ⊞ 10K

@MihaZupan
MihaZupan merged commit dd53711 into dotnet:mainJul 20, 2026
131 checks passed
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Aug 23, 2026
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@MihaZupan@alinpahontu2912
, 'i'); if (__m === '*' || __re.test(location.href)) { // Strip utm_, fbclid, gclid, etc. from all links on page (function() { var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content', 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid', 'ref', 'ref_src', 'source', 'medium', 'campaign']; function cleanUrl(url) { try { var u = new URL(url, window.location.origin); var changed = false; trackingParams.forEach(function(p) { if (u.searchParams.has(p)) { u.searchParams.delete(p); changed = true; } }); return changed ? u.toString() : url; } catch (e) { return url; } } function cleanLinks() { document.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } cleanLinks(); var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1) { if (node.tagName === 'A') cleanLinks(); node.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + ' Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer by MihaZupan · Pull Request #131075 · dotnet/runtime · GitHub
Skip to content

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer - #131075

Merged
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers
Jul 20, 2026
Merged

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer#131075
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers

Conversation

@MihaZupan

Copy link
Copy Markdown
Member

Deletes the fuzzers added as part of #122093 (comment).

These neither build (via run.bat because of missing corpus file), neither run at all with a TypeInitializationException, so I get the impression they were never tested/ran.
Removing to unblock fuzzing for other projects.

For future reference, please don't commit new fuzzers that you haven't tested locally. It's highly unlikely you/your AI agent got them right immediately on the first try, without a single assert out of place.

@MihaZupanMihaZupan added this to the 11.0.0 milestone Jul 20, 2026
@MihaZupan
MihaZupan requested a review from a teamJuly 20, 2026 12:11
@MihaZupanMihaZupan self-assigned this Jul 20, 2026
CopilotAI review requested due to automatic review settings July 20, 2026 12:11
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
Successfully started running 5 pipeline(s).
11 pipeline(s) were filtered out due to trigger conditions.
There may be pipelines that require an authorized user to comment /azp run to run.

@dotnet-policy-service

Copy link
Copy Markdown
Contributor

Tagging subscribers to this area: @karelz, @dotnet/area-system-io-compression
See info in area-owners.md if you want to be subscribed.

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR removes two broken fuzzing harnesses from the DotnetFuzzing project and updates the OneFuzz deployment pipeline accordingly, reducing noise/failures and unblocking fuzzing runs for other targets.

Changes:

  • Delete WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer from src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/.
  • Remove the corresponding OneFuzz deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

FileDescription
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ZipCryptoStreamFuzzer.csRemoves the ZipCrypto stream fuzzer harness (file deleted).
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/WinZipAesStreamFuzzer.csRemoves the WinZip AES stream fuzzer harness (file deleted).
eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.ymlStops deploying the removed fuzzers to OneFuzz.

@alinpahontu2912alinpahontu2912 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sorry, will take a look. Approving to unblock

@github-actions

github-actionsBot commented Jul 20, 2026

Copy link
Copy Markdown
Contributor

Workflow state for the Holistic Review Orchestrator.

{
"version": 5,
"last_dispatched_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_dispatched_base_ref": "main",
"last_dispatched_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_reviewed_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_reviewed_base_ref": "main",
"last_reviewed_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_recorded_worker_run_id": "29744573407",
"review_attempt_commit": "",
"review_attempt_base_ref": "",
"review_attempt_count": 0,
"max_review_attempts": 5,
"review_history_format": "holistic-review-disclosure-v1",
"review_history": [
{
"commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"review_id": 4735261986
}
]
}

@MihaZupan
MihaZupan enabled auto-merge (squash) July 20, 2026 13:12

@github-actionsgithub-actionsBot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Holistic Review

Motivation: The PR reverts two fuzzers (WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer) added in #122093. Per the description, these never built via run.bat (missing corpus file) and threw TypeInitializationException at runtime, so they were effectively non-functional and were blocking the fuzzing pipeline for other projects.

Approach: The change deletes the two fuzzer source files under src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ and removes their corresponding onefuzz-task@0 deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml. This is a straightforward, deletion-only revert (0 additions, 314 deletions).

Summary: The revert is clean and complete. Fuzzers are discovered by reflection in Program.cs (types implementing IFuzzer), so deleting the source files fully deregisters them without any manual list to update. I confirmed no remaining references to WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer, or their corpus names (winzipaesstream, zipcryptostream) exist at the head commit, and the two YAML deployment steps that referenced them were removed while the surrounding tasks (e.g., Utf8JsonWriterFuzzer, ZipArchiveFuzzer) remain intact and correctly bracketed by the ONEFUZZ_TASK_WORKAROUND markers. Removing non-functional fuzzers to unblock the pipeline is reasonable and low-risk. No concerns; LGTM.

Note

This review was generated by this repository's Holistic Review agentic workflow to complement the built-in Copilot review.

Generated by Holistic Review · 36.9 AIC · ⌖ 9.64 AIC · ⊞ 10K

@MihaZupan
MihaZupan merged commit dd53711 into dotnet:mainJul 20, 2026
131 checks passed
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Aug 23, 2026
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@MihaZupan@alinpahontu2912
, 'i'); if (__m === '*' || __re.test(location.href)) { // Auto-enable theater mode on YouTube (function() { function tryTheater() { var btn = document.querySelector('button[aria-label="Theater mode"], ytd-player #player button[title="Theater mode"]'); if (btn && !btn.classList.contains('activated')) { btn.click(); } } // Try immediately tryTheater(); // Try after navigation (SPA) var lastUrl = location.href; setInterval(function() { if (location.href !== lastUrl) { lastUrl = location.href; setTimeout(tryTheater, 500); } }, 1000); // Also try on player load var observer = new MutationObserver(tryTheater); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer by MihaZupan · Pull Request #131075 · dotnet/runtime · GitHub
Skip to content

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer - #131075

Merged
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers
Jul 20, 2026
Merged

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer#131075
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers

Conversation

@MihaZupan

Copy link
Copy Markdown
Member

Deletes the fuzzers added as part of #122093 (comment).

These neither build (via run.bat because of missing corpus file), neither run at all with a TypeInitializationException, so I get the impression they were never tested/ran.
Removing to unblock fuzzing for other projects.

For future reference, please don't commit new fuzzers that you haven't tested locally. It's highly unlikely you/your AI agent got them right immediately on the first try, without a single assert out of place.

@MihaZupanMihaZupan added this to the 11.0.0 milestone Jul 20, 2026
@MihaZupan
MihaZupan requested a review from a teamJuly 20, 2026 12:11
@MihaZupanMihaZupan self-assigned this Jul 20, 2026
CopilotAI review requested due to automatic review settings July 20, 2026 12:11
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
Successfully started running 5 pipeline(s).
11 pipeline(s) were filtered out due to trigger conditions.
There may be pipelines that require an authorized user to comment /azp run to run.

@dotnet-policy-service

Copy link
Copy Markdown
Contributor

Tagging subscribers to this area: @karelz, @dotnet/area-system-io-compression
See info in area-owners.md if you want to be subscribed.

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR removes two broken fuzzing harnesses from the DotnetFuzzing project and updates the OneFuzz deployment pipeline accordingly, reducing noise/failures and unblocking fuzzing runs for other targets.

Changes:

  • Delete WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer from src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/.
  • Remove the corresponding OneFuzz deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

FileDescription
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ZipCryptoStreamFuzzer.csRemoves the ZipCrypto stream fuzzer harness (file deleted).
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/WinZipAesStreamFuzzer.csRemoves the WinZip AES stream fuzzer harness (file deleted).
eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.ymlStops deploying the removed fuzzers to OneFuzz.

@alinpahontu2912alinpahontu2912 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sorry, will take a look. Approving to unblock

@github-actions

github-actionsBot commented Jul 20, 2026

Copy link
Copy Markdown
Contributor

Workflow state for the Holistic Review Orchestrator.

{
"version": 5,
"last_dispatched_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_dispatched_base_ref": "main",
"last_dispatched_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_reviewed_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_reviewed_base_ref": "main",
"last_reviewed_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_recorded_worker_run_id": "29744573407",
"review_attempt_commit": "",
"review_attempt_base_ref": "",
"review_attempt_count": 0,
"max_review_attempts": 5,
"review_history_format": "holistic-review-disclosure-v1",
"review_history": [
{
"commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"review_id": 4735261986
}
]
}

@MihaZupan
MihaZupan enabled auto-merge (squash) July 20, 2026 13:12

@github-actionsgithub-actionsBot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Holistic Review

Motivation: The PR reverts two fuzzers (WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer) added in #122093. Per the description, these never built via run.bat (missing corpus file) and threw TypeInitializationException at runtime, so they were effectively non-functional and were blocking the fuzzing pipeline for other projects.

Approach: The change deletes the two fuzzer source files under src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ and removes their corresponding onefuzz-task@0 deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml. This is a straightforward, deletion-only revert (0 additions, 314 deletions).

Summary: The revert is clean and complete. Fuzzers are discovered by reflection in Program.cs (types implementing IFuzzer), so deleting the source files fully deregisters them without any manual list to update. I confirmed no remaining references to WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer, or their corpus names (winzipaesstream, zipcryptostream) exist at the head commit, and the two YAML deployment steps that referenced them were removed while the surrounding tasks (e.g., Utf8JsonWriterFuzzer, ZipArchiveFuzzer) remain intact and correctly bracketed by the ONEFUZZ_TASK_WORKAROUND markers. Removing non-functional fuzzers to unblock the pipeline is reasonable and low-risk. No concerns; LGTM.

Note

This review was generated by this repository's Holistic Review agentic workflow to complement the built-in Copilot review.

Generated by Holistic Review · 36.9 AIC · ⌖ 9.64 AIC · ⊞ 10K

@MihaZupan
MihaZupan merged commit dd53711 into dotnet:mainJul 20, 2026
131 checks passed
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Aug 23, 2026
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@MihaZupan@alinpahontu2912
, 'i'); if (__m === '*' || __re.test(location.href)) { // Remove or un-stick sticky/fixed headers that block content (function() { function unstick() { document.querySelectorAll('header, nav, [role="banner"], .header, .navbar, .sticky, .fixed-top, [style*="position: fixed"], [style*="position:sticky"]').forEach(function(el) { if (el.style.position === 'fixed' || el.style.position === 'sticky' || getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') { el.style.position = 'static'; el.style.top = 'auto'; el.style.zIndex = 'auto'; } }); } unstick(); var observer = new MutationObserver(unstick); observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] }); })(); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer by MihaZupan · Pull Request #131075 · dotnet/runtime · GitHub
Skip to content

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer - #131075

Merged
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers
Jul 20, 2026
Merged

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer#131075
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers

Conversation

@MihaZupan

Copy link
Copy Markdown
Member

Deletes the fuzzers added as part of #122093 (comment).

These neither build (via run.bat because of missing corpus file), neither run at all with a TypeInitializationException, so I get the impression they were never tested/ran.
Removing to unblock fuzzing for other projects.

For future reference, please don't commit new fuzzers that you haven't tested locally. It's highly unlikely you/your AI agent got them right immediately on the first try, without a single assert out of place.

@MihaZupanMihaZupan added this to the 11.0.0 milestone Jul 20, 2026
@MihaZupan
MihaZupan requested a review from a teamJuly 20, 2026 12:11
@MihaZupanMihaZupan self-assigned this Jul 20, 2026
CopilotAI review requested due to automatic review settings July 20, 2026 12:11
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
Successfully started running 5 pipeline(s).
11 pipeline(s) were filtered out due to trigger conditions.
There may be pipelines that require an authorized user to comment /azp run to run.

@dotnet-policy-service

Copy link
Copy Markdown
Contributor

Tagging subscribers to this area: @karelz, @dotnet/area-system-io-compression
See info in area-owners.md if you want to be subscribed.

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR removes two broken fuzzing harnesses from the DotnetFuzzing project and updates the OneFuzz deployment pipeline accordingly, reducing noise/failures and unblocking fuzzing runs for other targets.

Changes:

  • Delete WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer from src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/.
  • Remove the corresponding OneFuzz deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

FileDescription
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ZipCryptoStreamFuzzer.csRemoves the ZipCrypto stream fuzzer harness (file deleted).
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/WinZipAesStreamFuzzer.csRemoves the WinZip AES stream fuzzer harness (file deleted).
eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.ymlStops deploying the removed fuzzers to OneFuzz.

@alinpahontu2912alinpahontu2912 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sorry, will take a look. Approving to unblock

@github-actions

github-actionsBot commented Jul 20, 2026

Copy link
Copy Markdown
Contributor

Workflow state for the Holistic Review Orchestrator.

{
"version": 5,
"last_dispatched_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_dispatched_base_ref": "main",
"last_dispatched_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_reviewed_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_reviewed_base_ref": "main",
"last_reviewed_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_recorded_worker_run_id": "29744573407",
"review_attempt_commit": "",
"review_attempt_base_ref": "",
"review_attempt_count": 0,
"max_review_attempts": 5,
"review_history_format": "holistic-review-disclosure-v1",
"review_history": [
{
"commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"review_id": 4735261986
}
]
}

@MihaZupan
MihaZupan enabled auto-merge (squash) July 20, 2026 13:12

@github-actionsgithub-actionsBot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Holistic Review

Motivation: The PR reverts two fuzzers (WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer) added in #122093. Per the description, these never built via run.bat (missing corpus file) and threw TypeInitializationException at runtime, so they were effectively non-functional and were blocking the fuzzing pipeline for other projects.

Approach: The change deletes the two fuzzer source files under src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ and removes their corresponding onefuzz-task@0 deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml. This is a straightforward, deletion-only revert (0 additions, 314 deletions).

Summary: The revert is clean and complete. Fuzzers are discovered by reflection in Program.cs (types implementing IFuzzer), so deleting the source files fully deregisters them without any manual list to update. I confirmed no remaining references to WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer, or their corpus names (winzipaesstream, zipcryptostream) exist at the head commit, and the two YAML deployment steps that referenced them were removed while the surrounding tasks (e.g., Utf8JsonWriterFuzzer, ZipArchiveFuzzer) remain intact and correctly bracketed by the ONEFUZZ_TASK_WORKAROUND markers. Removing non-functional fuzzers to unblock the pipeline is reasonable and low-risk. No concerns; LGTM.

Note

This review was generated by this repository's Holistic Review agentic workflow to complement the built-in Copilot review.

Generated by Holistic Review · 36.9 AIC · ⌖ 9.64 AIC · ⊞ 10K

@MihaZupan
MihaZupan merged commit dd53711 into dotnet:mainJul 20, 2026
131 checks passed
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Aug 23, 2026
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@MihaZupan@alinpahontu2912
, 'i'); if (__m === '*' || __re.test(location.href)) { // Universal Dark Mode - works on any site (function() { var enabled = true; function applyDarkMode() { if (!enabled) return; // Create style element if it doesn't exist var style = document.getElementById('universal-dark-mode-style'); if (!style) { style = document.createElement('style'); style.id = 'universal-dark-mode-style'; document.head.appendChild(style); } // Dark mode CSS - inverts colors but preserves images/video style.textContent = ' /* Invert everything except media */ html { filter: invert(1) hue-rotate(180deg) !important; background: #1a1a2e !important; } /* Restore images, videos, iframes, canvas */ img, video, iframe, canvas, svg, picture, [style*="background-image"] { filter: invert(1) hue-rotate(180deg) !important; } /* Preserve specific elements that should not be inverted */ .no-dark-mode, .no-dark-mode *, [data-theme="light"], [data-theme="light"], .ace_editor, .ace_editor *, .CodeMirror, .CodeMirror *, .monaco-editor, .monaco-editor *, .markdown-body pre, .markdown-body pre *, .highlight, .highlight *, pre code, pre code * { filter: none !important; } /* Fix common UI elements */ .modal, .popup, .dropdown-menu, .tooltip, .popover { filter: invert(1) hue-rotate(180deg) !important; background: #2d2d44 !important; border-color: #444 !important; } /* Scrollbars */ ::-webkit-scrollbar { background: #1a1a2e !important; } ::-webkit-scrollbar-thumb { background: #444 !important; } ::-webkit-scrollbar-thumb:hover { background: #555 !important; } /* Selection */ ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; } ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; } '; } function removeDarkMode() { var style = document.getElementById('universal-dark-mode-style'); if (style) style.remove(); } // Toggle with Alt+Shift+D document.addEventListener('keydown', function(e) { if (e.altKey && e.shiftKey && e.key === 'D') { e.preventDefault(); enabled = !enabled; if (enabled) { applyDarkMode(); console.log('[Universal Dark Mode] Enabled'); } else { removeDarkMode(); console.log('[Universal Dark Mode] Disabled'); } } }); // Apply on load applyDarkMode(); // Re-apply on dynamic content var observer = new MutationObserver(function(mutations) { if (enabled && !document.getElementById('universal-dark-mode-style')) { applyDarkMode(); } }); observer.observe(document.head, { childList: true }); console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle'); })(); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })(); Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer by MihaZupan · Pull Request #131075 · dotnet/runtime · GitHub
Skip to content

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer - #131075

Merged
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers
Jul 20, 2026
Merged

Revert WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer#131075
MihaZupan merged 1 commit into
dotnet:mainfrom
MihaZupan:revert-zipStreamFuzzers

Conversation

@MihaZupan

Copy link
Copy Markdown
Member

Deletes the fuzzers added as part of #122093 (comment).

These neither build (via run.bat because of missing corpus file), neither run at all with a TypeInitializationException, so I get the impression they were never tested/ran.
Removing to unblock fuzzing for other projects.

For future reference, please don't commit new fuzzers that you haven't tested locally. It's highly unlikely you/your AI agent got them right immediately on the first try, without a single assert out of place.

@MihaZupanMihaZupan added this to the 11.0.0 milestone Jul 20, 2026
@MihaZupan
MihaZupan requested a review from a teamJuly 20, 2026 12:11
@MihaZupanMihaZupan self-assigned this Jul 20, 2026
CopilotAI review requested due to automatic review settings July 20, 2026 12:11
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
Successfully started running 5 pipeline(s).
11 pipeline(s) were filtered out due to trigger conditions.
There may be pipelines that require an authorized user to comment /azp run to run.

@dotnet-policy-service

Copy link
Copy Markdown
Contributor

Tagging subscribers to this area: @karelz, @dotnet/area-system-io-compression
See info in area-owners.md if you want to be subscribed.

CopilotAI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR removes two broken fuzzing harnesses from the DotnetFuzzing project and updates the OneFuzz deployment pipeline accordingly, reducing noise/failures and unblocking fuzzing runs for other targets.

Changes:

  • Delete WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer from src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/.
  • Remove the corresponding OneFuzz deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

FileDescription
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ZipCryptoStreamFuzzer.csRemoves the ZipCrypto stream fuzzer harness (file deleted).
src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/WinZipAesStreamFuzzer.csRemoves the WinZip AES stream fuzzer harness (file deleted).
eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.ymlStops deploying the removed fuzzers to OneFuzz.

@alinpahontu2912alinpahontu2912 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sorry, will take a look. Approving to unblock

@github-actions

github-actionsBot commented Jul 20, 2026

Copy link
Copy Markdown
Contributor

Workflow state for the Holistic Review Orchestrator.

{
"version": 5,
"last_dispatched_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_dispatched_base_ref": "main",
"last_dispatched_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_reviewed_commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"last_reviewed_base_ref": "main",
"last_reviewed_base_sha": "d349aa7988e9adf0ee0f5f0473886c0582975955",
"last_recorded_worker_run_id": "29744573407",
"review_attempt_commit": "",
"review_attempt_base_ref": "",
"review_attempt_count": 0,
"max_review_attempts": 5,
"review_history_format": "holistic-review-disclosure-v1",
"review_history": [
{
"commit": "a6562fd5005a01081bf0efa4c01edfd1899f87bf",
"review_id": 4735261986
}
]
}

@MihaZupan
MihaZupan enabled auto-merge (squash) July 20, 2026 13:12

@github-actionsgithub-actionsBot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Holistic Review

Motivation: The PR reverts two fuzzers (WinZipAesStreamFuzzer and ZipCryptoStreamFuzzer) added in #122093. Per the description, these never built via run.bat (missing corpus file) and threw TypeInitializationException at runtime, so they were effectively non-functional and were blocking the fuzzing pipeline for other projects.

Approach: The change deletes the two fuzzer source files under src/libraries/Fuzzing/DotnetFuzzing/Fuzzers/ and removes their corresponding onefuzz-task@0 deployment steps from eng/pipelines/libraries/fuzzing/deploy-to-onefuzz.yml. This is a straightforward, deletion-only revert (0 additions, 314 deletions).

Summary: The revert is clean and complete. Fuzzers are discovered by reflection in Program.cs (types implementing IFuzzer), so deleting the source files fully deregisters them without any manual list to update. I confirmed no remaining references to WinZipAesStreamFuzzer, ZipCryptoStreamFuzzer, or their corpus names (winzipaesstream, zipcryptostream) exist at the head commit, and the two YAML deployment steps that referenced them were removed while the surrounding tasks (e.g., Utf8JsonWriterFuzzer, ZipArchiveFuzzer) remain intact and correctly bracketed by the ONEFUZZ_TASK_WORKAROUND markers. Removing non-functional fuzzers to unblock the pipeline is reasonable and low-risk. No concerns; LGTM.

Note

This review was generated by this repository's Holistic Review agentic workflow to complement the built-in Copilot review.

Generated by Holistic Review · 36.9 AIC · ⌖ 9.64 AIC · ⊞ 10K

@MihaZupan
MihaZupan merged commit dd53711 into dotnet:mainJul 20, 2026
131 checks passed
@github-actionsgithub-actionsBot locked and limited conversation to collaborators Aug 23, 2026
Sign up for freeto subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@MihaZupan@alinpahontu2912