AppThreat / atom
Atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.
β64Updated 3 weeks ago
Alternatives and similar repositories for atom:
Users that are interested in atom are comparing it to the libraries listed below
- Code Hierarchy Exploration Net (chen)β20Updated 3 weeks ago
- Manager of third-party sources of Semgrep rules πβ81Updated 8 months ago
- A very simple open source implementation of Google's Project Naptimeβ139Updated 3 weeks ago
- π§ͺ Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.β39Updated 4 months ago
- XBOW Validation Benchmarksβ84Updated 7 months ago
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.β74Updated last year
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,β¦β132Updated last year
- πA cutting edge context aware GraphQL API fuzzing tool!β139Updated this week
- Automated vulnerability discovery and annotationβ66Updated 8 months ago
- A MCP server for using Semgrep to scan code for security vulnerabilities.β109Updated last week
- β70Updated 2 months ago
- Trail of Bits Testing Handbookβ72Updated last week
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.1, purl, and versβ¦β114Updated this week
- boostsecurityio/lotpβ123Updated last week
- A powerful tool that leverages AI to automatically generate comprehensive security documentation for your projectsβ72Updated this week
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebasβ¦β142Updated last year
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and oβ¦β75Updated 3 weeks ago
- Code Pathfinder, the open-source alternative to GitHub CodeQL built with GoLang. Built for advanced structural search, derive insights, fβ¦β58Updated this week
- Takes a software bill of materials and outputs provenance, and activity data from trustypkg.dev