Aurore54F / static-pdg-js
Static JavaScript Analysis: AST, Control Flow, Data Flow, & Pointer Analysis
☆25Updated 3 years ago
Alternatives and similar repositories for static-pdg-js:
Users that are interested in static-pdg-js are comparing it to the libraries listed below
- Modular static malicious JavaScript detection system☆69Updated 4 years ago
- ☆26Updated last year
- Static data flow-based analysis of JavaScript files to detect syntactic clones☆23Updated 4 years ago
- Statically Detecting Vulnerable Data Flows in Browser Extensions at Scale☆74Updated 3 years ago
- HiddenCPG: Large-Scale Vulnerable Clone Detection Using Subgraph Isomorphism of Code Property Graphs☆42Updated 2 years ago
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆23Updated 3 years ago
- Artifacts of the paper "Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Content" in USENIX…☆13Updated 7 months ago
- Soot-based taint analysis with internal Java fluent interface for security specifications in fluentTQL implemented with MagpieBridge to s…☆17Updated last month
- ☆31Updated 5 months ago
- Basic Gradle configuration and example drivers to get started with WALA☆29Updated 3 months ago
- The public dataset in the paper "PatchDB: A Large-Scale Security Patch Dataset". This paper appears in the 51st Annual IEEE/IFIP Interna…☆40Updated last year
- Testability Pattern Catalogs for SAST☆29Updated last month
- The official repository of "GraphSPD: Graph-Based Security Patch Detection with Enriched Code Semantics". The paper will appear in the IE…☆44Updated last year
- Testability Tarpits: the Impact of Code Patterns on the Security Testing of Web Applications (NDSS 2022)☆25Updated last year
- ☆24Updated last year
- Qilin: A New Framework for Supporting Fine-Grained Context-Sensitivity in Java Pointer Analysis☆129Updated last month
- Efficient and Precise Pointer-Tracking Data-Flow Framework☆66Updated 3 months ago
- AUSERA: Automated Security Vulnerability Detection for Android Apps☆31Updated 4 months ago
- ☆10Updated 2 years ago
- ☆37Updated 2 years ago
- ICCBot: A Fragment-Aware and Context-Sensitive ICC Resolution Tool for Android Applications☆38Updated last year
- ☆18Updated 3 weeks ago
- ☆24Updated 2 years ago
- The source code (including datasets) of V1SCAN (USENIX Security 2023; will be uploaded).☆41Updated last year
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆153Updated last year
- Assisting Static Analysis with Large Language Models: A ChatGPT Experiment☆34Updated last year
- Cyber Code Intelligence (CyberCI)☆14Updated 4 years ago
- Detecting Flow of Sensitive Data in Mini-Programs with Static Taint Analysis☆74Updated last year
- ☠️ Ground-truth dataset for vulnerability prediction (known research datasets and data sources included such as NVD, CVE Details and OSV)…☆88Updated last year
- ISSTA'23 - Third-party Library Dependency for Large-scale SCA in the C/C++ Ecosystem: How Far Are We?☆29Updated last year