Aurore54F / JStap
Modular static malicious JavaScript detection system
☆65Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for JStap
- Syntactic detection of malicious (obfuscated) JavaScript files☆71Updated 4 years ago
- Static data flow-based analysis of JavaScript files to detect syntactic clones☆22Updated 4 years ago
- ☆28Updated last month
- ☆27Updated 2 years ago
- Static JavaScript Analysis: AST, Control Flow, Data Flow, & Pointer Analysis☆22Updated 2 years ago
- Statically Detecting Vulnerable Data Flows in Browser Extensions at Scale☆67Updated 2 years ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆122Updated 2 years ago
- Artifact accompanying our ICSE '22 paper "Practical Automated Detection of Malicious npm Packages"☆39Updated 2 years ago
- (AST-based + variables' name info) malicious JavaScript detection system, concept from Zozzle☆16Updated 5 years ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆147Updated 9 months ago
- HiddenCPG: Large-Scale Vulnerable Clone Detection Using Subgraph Isomorphism of Code Property Graphs☆40Updated 2 years ago
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆22Updated 2 years ago
- VUDDY: A Scalable and Accurate Vulnerable Code Clone Detector (S&P'17)☆51Updated 5 months ago
- ☆23Updated 9 months ago
- This repository contains a list of papers about software supply chain☆25Updated 5 months ago
- A collection of test cases in the Java language. It contains examples for 112 different CWEs.☆52Updated 3 years ago
- Home page of project "KB"☆113Updated 3 weeks ago
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆99Updated last week
- DiAne is a smart fuzzer for IoT devices☆39Updated 7 months ago
- ☆50Updated 10 months ago
- Testability Pattern Catalogs for SAST☆29Updated 8 months ago
- ☆50Updated 3 years ago
- An Automated Vulnerability Detection System☆57Updated 8 years ago
- ☠️ Ground-truth dataset for vulnerability prediction (known research datasets and data sources included such as NVD, CVE Details and OSV)…☆82Updated last year
- ☆33Updated 2 years ago
- ISSTA'23 - Third-party Library Dependency for Large-scale SCA in the C/C++ Ecosystem: How Far Are We?☆27Updated last year
- Source Code Vulnerability Detection Tools(SCVDT)provides a vulnerable code database, vulnerability detection service for Java and C/C++ p…☆110Updated 3 years ago
- ReDeBug Source Code.☆24Updated 11 months ago
- VFCFinder: Searching for the Missing Vulnerability Fixing Commits☆21Updated 11 months ago
- Cyber Code Intelligence (CyberCI)☆14Updated 3 years ago