247arjun / ai-secure-code-reviewLinks
Welcome to `ai-secure-code-review`, a repository that integrates static analysis tools with Generative AI, specifically Semgrep and Azure OpenAI's GPT models, to automate and enhance code reviews for improved efficiency, scalability, and effectiveness in identifying potential software vulnerabilities.
☆36Updated 11 months ago
Alternatives and similar repositories for ai-secure-code-review
Users that are interested in ai-secure-code-review are comparing it to the libraries listed below
Sorting:
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆138Updated this week
- Damn Vulnerable Java (EE) Application☆142Updated last year
- Purposely vulnerable Java application to help lead secure coding workshops☆189Updated last year
- GCP GOAT is the vulnerable application for learn the GCP Security☆68Updated 5 months ago
- ☆84Updated 2 years ago
- LLM Testing Findings Templates☆74Updated last year
- Prototype of Full Agentic Application Security Testing, FAAST = SAST + DAST + LLM agents☆64Updated 5 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆50Updated 2 years ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆106Updated 9 months ago
- ☆114Updated 2 years ago
- This repository hosts several snippets and file related to the BsidesLV 2024 talk about Shadow and Zombie APIs by me☆18Updated last year
- A project to visualize the software supply chain☆53Updated 2 years ago
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆132Updated 2 years ago
- InfoSec OpenAI Examples☆19Updated last year
- A research project to add some brrrrrr to Burp☆194Updated 8 months ago
- Tarpit - A Web application seeded with vulnerabilities, rootkits, backdoors & data leaks☆81Updated 3 years ago
- 📚A curated list of product security resources.☆21Updated 4 months ago
- Manager of third-party sources of Semgrep rules 🗂☆90Updated last year
- Run Capture the Flags and Security Trainings with OWASP WrongSecrets☆52Updated 2 weeks ago
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆81Updated 2 years ago
- OWASP Code Review Guide Web Repository☆144Updated 3 years ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆67Updated 4 months ago
- ☆116Updated 2 years ago
- A small tool to help developers understand a huge set of security requirements from appsec teams☆47Updated 3 years ago
- Damn Vulnerable Python Web App☆180Updated last year
- A simple script which implements different Cognito attacks such as Account Oracle or Priviledge Escalation☆107Updated last year
- This repository contains an example Python API that is vulnerable to several different web API attacks.☆70Updated last year
- A collection of Turbo Intruder scripts.☆66Updated 8 months ago
- Semgrep rules corresponding to the OWASP ASVS standard☆28Updated 4 years ago
- An experimental project using LLM technology to generate security documentation for Open Source Software (OSS) projects☆34Updated 8 months ago