ASTTeam / Semgrep
《深入理解Semgrep》Finding vulnerabilities with Semgrep.
☆38Updated last year
Related projects ⓘ
Alternatives and complementary repositories for Semgrep
- Low-level RASP: Protecting Applications Implemented in High-level Programming Languages☆56Updated last year
- 《深入理解DAST动态应用程序安全测试》Dynamic Application Security Testing.☆47Updated 2 years ago
- S&P2023 Paper☆39Updated 2 years ago
- CodeQL中文资料和常见使用解释。Chinese version of Codeql documents☆9Updated 4 years ago
- ☆28Updated 4 years ago
- neo4j plugin of ByteCodeDL for the IntelliJ Platform. ByteCodeDL-Neo4j-IDEA-Plugin☆16Updated 10 months ago
- Go-sec-code is a project for learning Go vulnerability code.☆35Updated last year
- 收录go语言编写的项目、框架和组件出现的cve,或者一些相关的利用方式的文章☆36Updated last year
- JAVA IAST Example☆46Updated 2 years ago
- a dataflow analysis framework implemented in Go, like soot☆29Updated 2 years ago
- Easy burp sign extension!☆23Updated this week
- slides and papers from (or partly from) Bonan☆22Updated 8 months ago
- ☆81Updated 2 years ago
- 安全大佬 Top 100☆65Updated 2 years ago
- generate facts from bytecode (source is https://github.com/plast-lab/doop-mirror/tree/master/generators)☆23Updated 10 months ago
- A benchmark to evaluate taint analysis☆30Updated 2 years ago
- ☆34Updated 3 years ago
- ☆41Updated 3 years ago
- 简单实现的 Java RASP☆35Updated 4 years ago
- CVE-2022-0185 POC and Docker and Analysis write up☆37Updated 2 years ago
- Writeup and environment for XCTF2021Final-Dubbo☆45Updated 3 years ago
- Collection of CTF Web challenges I made☆49Updated last year
- 阿里云先知社区xss挑战☆21Updated 7 years ago
- 用来将Tai-e改造为开箱即用的静态代码安全分析框架的一些demo☆33Updated 6 months ago
- Java agent without file 无文件的Java agent☆76Updated 2 years ago
- CodeQL分析闭源Jar包脚本,基于Apache Ant构建CodeQL数据库☆29Updated 2 years ago
- Tai-e的Web插件☆19Updated 4 months ago