247arjun / ai-secure-code-reviewLinks
Welcome to `ai-secure-code-review`, a repository that integrates static analysis tools with Generative AI, specifically Semgrep and Azure OpenAI's GPT models, to automate and enhance code reviews for improved efficiency, scalability, and effectiveness in identifying potential software vulnerabilities.
☆31Updated 6 months ago
Alternatives and similar repositories for ai-secure-code-review
Users that are interested in ai-secure-code-review are comparing it to the libraries listed below
Sorting:
- Blogpost series showcasing interesting cloud - web app security bugs☆49Updated last year
- GCP GOAT is the vulnerable application for learn the GCP Security☆64Updated 2 weeks ago
- InfoSec OpenAI Examples☆19Updated last year
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆133Updated 2 months ago
- ☆115Updated last year
- This repository hosts several snippets and file related to the BsidesLV 2024 talk about Shadow and Zombie APIs by me☆18Updated 10 months ago
- Damn Vulnerable Java (EE) Application☆138Updated last year
- Run Capture the Flags and Security Trainings with OWASP WrongSecrets☆47Updated this week
- Manager of third-party sources of Semgrep rules 🗂☆86Updated 10 months ago
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆126Updated 2 years ago
- ☆194Updated 7 months ago
- A Burp Suite Extension for parsing Project Files from the CLI.☆87Updated 8 months ago
- ☆77Updated 3 weeks ago
- An extension to use Semgrep inside Burp Suite.☆89Updated 2 weeks ago
- Tarpit - A Web application seeded with vulnerabilities, rootkits, backdoors & data leaks☆79Updated 2 years ago
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆80Updated 2 years ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆65Updated 11 months ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆105Updated 4 months ago
- ☆90Updated 3 years ago
- Custom scripts for the PIPER Burp extensions.☆98Updated last year
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆125Updated last year
- 📚A curated list of product security resources.☆20Updated 2 years ago
- A small tool to help developers understand a huge set of security requirements from appsec teams☆45Updated 2 years ago
- ☆81Updated 2 years ago
- A collection of my Semgrep rules☆49Updated last year
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆119Updated 2 months ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 4 years ago
- Contains all my research and content produced regarding the log4shell vulnerability☆31Updated 3 years ago
- ☠️ Code for the Defcon Workshop☆23Updated 10 months ago
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆161Updated 6 months ago