Aurore54F / DoubleX
Statically Detecting Vulnerable Data Flows in Browser Extensions at Scale
☆71Updated 3 years ago
Alternatives and similar repositories for DoubleX:
Users that are interested in DoubleX are comparing it to the libraries listed below
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆105Updated 2 months ago
- ☆30Updated 4 months ago
- ☆43Updated 7 months ago
- Static JavaScript Analysis: AST, Control Flow, Data Flow, & Pointer Analysis☆23Updated 2 years ago
- Modular static malicious JavaScript detection system☆67Updated 4 years ago
- A framework for identifying vulnerabilities in VS Code extensions☆16Updated 7 months ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆152Updated last year
- VFCFinder: Searching for the Missing Vulnerability Fixing Commits☆26Updated last year
- ☆25Updated last year
- Testability Pattern Catalogs for SAST☆29Updated 11 months ago
- Static data flow-based analysis of JavaScript files to detect syntactic clones☆22Updated 4 years ago
- ☆50Updated 2 years ago
- The source code (including datasets) of V1SCAN (USENIX Security 2023; will be uploaded).☆41Updated last year
- A coverage-guided REST API fuzzer developed on top of LibAFL☆107Updated this week
- ☆123Updated 9 months ago
- TaintFlow, a framework for JavaScript dynamic information flow analysis.☆17Updated 2 years ago
- The public dataset in the paper "PatchDB: A Large-Scale Security Patch Dataset". This paper appears in the 51st Annual IEEE/IFIP Interna…☆38Updated last year
- Automatically fuzz Rust projects from scratch☆55Updated 9 months ago
- A curated list of awesome resources about LLM supply chain security (including papers, security reports and CVEs)☆32Updated 3 weeks ago
- Common Corpus is used to build coverage-minimized corpus data sets for fuzzing.☆25Updated last year
- AutoCorpus is a tool backed by a large language model (LLM) for automatically generating corpus files for fuzzing.☆54Updated 9 months ago
- CodeQL queries developed by Trail of Bits☆85Updated last month
- DiAne is a smart fuzzer for IoT devices☆40Updated 10 months ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆43Updated last year
- ☆47Updated 5 months ago
- find relevant security papers published in the top-4 conferences (S&P, USENIX, CCS, NDSS)☆180Updated 5 months ago
- ☆63Updated 11 months ago
- ☆27Updated 3 years ago
- Large Language Model guided Protocol Fuzzing (NDSS'24)☆304Updated 4 months ago