At first, I would you like to thank you for this fuzzing app. It found hundreds of bugs already. I have an idea. What about running any fuzzing code twice against different php configuration, like JIT vs. non JIT? Excluding functions that can introduce randomness, the results must be always exactly the same.