Anemone95 / taint-benchmark
A benchmark to evaluate taint analysis
☆30Updated 2 years ago
Alternatives and similar repositories for taint-benchmark:
Users that are interested in taint-benchmark are comparing it to the libraries listed below
- S&P2023 Paper☆39Updated 2 years ago
- solution to buggyLoader of 0CTF/TCTF 2021 Finals☆20Updated 3 years ago
- Taint analysis implementation based on Heros and Soot☆44Updated 11 months ago
- ☆41Updated 4 years ago
- Low-level RASP: Protecting Applications Implemented in High-level Programming Languages☆59Updated last year
- WALA 学习笔记☆14Updated last year
- Collection of CTF Web challenges I made☆52Updated last year
- Personal CodeQL queries☆62Updated this week
- neo4j plugin of ByteCodeDL for the IntelliJ Platform. ByteCodeDL-Neo4j-IDEA-Plugin☆16Updated last year
- ☆12Updated 3 years ago
- 用来将Tai-e改造为开箱即用的静态代码安全分析框架的一些demo☆37Updated last year
- Writeup and environment for XCTF2021Final-Dubbo☆44Updated 3 years ago
- ☆24Updated 2 years ago
- generate facts from bytecode (source is https://github.com/plast-lab/doop-mirror/tree/master/generators)☆23Updated 4 months ago
- To solve some readflag situation in ctfs☆34Updated 4 years ago
- nativeRasp that can hook native methods☆23Updated last year
- PHP Static Program Analysis☆41Updated 2 years ago
- 基于Java ASM技术和GadgetInspector的原理,尝试实现一个自动Java代码审计工具。目前做到了可控参数分析和数据流跟踪分析☆36Updated 3 years ago
- 《深入理解Semgrep》Finding vulnerabilities with Semgrep.☆48Updated last year
- Auto-generated CodeQL rules for matching CVE vulnerabilities and variants.☆168Updated 6 months ago
- 简单实现的 Java RASP☆35Updated 4 years ago
- 一些Java RASP demo☆11Updated 5 years ago
- a dataflow analysis framework implemented in Go, like soot☆35Updated 2 years ago
- A curated list of audit rules which extract from Source Code Auditing tools.☆13Updated 5 years ago
- GreHack 2021 CodeQL for Java workshop☆75Updated 3 years ago
- A neo4j procedure for tabby☆121Updated 10 months ago
- TongASDP漏洞测试环境☆35Updated 2 years ago
- CodeQL中文资料和常见使用解释。Chinese version of Codeql documents☆9Updated 4 years ago
- Detecting Flow of Sensitive Data in Mini-Programs with Static Taint Analysis☆74Updated last year
- 静态程序分析工具 主要生成方法的CFG和.java文件的AST☆128Updated last year