BEESLab / ArcanumLinks
Artifacts of the paper "Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Content" in USENIX Security Symposium 2024
☆15Updated 11 months ago
Alternatives and similar repositories for Arcanum
Users that are interested in Arcanum are comparing it to the libraries listed below
Sorting:
- Static JavaScript Analysis: AST, Control Flow, Data Flow, & Pointer Analysis☆27Updated 3 years ago
- JavaScript Transformation Techniques Detection☆10Updated 4 years ago
- MDG-based static vulnerability scanner specialized in analyzing npm packages and detecting taint-style and prototype pollution vulnerabil…☆18Updated 3 months ago
- Statically Detecting Vulnerable Data Flows in Browser Extensions at Scale☆75Updated 3 years ago
- Modular static malicious JavaScript detection system☆71Updated 4 years ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆153Updated last year
- ☆32Updated 9 months ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆133Updated 2 years ago
- PatchFinder: A Two-Phase Approach to Security Patch Tracing for Disclosed Vulnerabilities in Open Source Software (ISSTA 2024)☆20Updated 3 months ago
- A curated list of awesome resources about LLM supply chain security (including papers, security reports and CVEs)☆78Updated 5 months ago
- VulTrigger is a tool to for identifying vulnerability-triggering statements across functions and investigating the effectiveness of funct…☆37Updated last year
- HiddenCPG: Large-Scale Vulnerable Clone Detection Using Subgraph Isomorphism of Code Property Graphs☆43Updated 2 years ago
- SecLLMHolmes is a generalized, fully automated, and scalable framework to systematically evaluate the performance (i.e., accuracy and rea…☆58Updated 2 months ago
- CVEfixes: Automated Collection of Vulnerabilities and Their Fixes from Open-Source Software☆263Updated 11 months ago
- DiverseVul: A New Vulnerable Source Code Dataset for Deep Learning Based Vulnerability Detection (RAID 2023) https://surrealyz.github.io/…☆150Updated 8 months ago
- ☆48Updated 2 years ago
- MPHunter can detect malicious packages without explicit knowledge.☆5Updated last year
- This repository contains a list of papers about software supply chain☆29Updated last year
- Vul4J: A Dataset of Reproducible Java Vulnerabilities☆92Updated 3 weeks ago
- ☆29Updated 9 months ago
- A deep learning model for localizing bugs in C/C++ source code (USENIX'23)☆149Updated 2 years ago
- Static data flow-based analysis of JavaScript files to detect syntactic clones☆23Updated 5 years ago
- An implementation of the ACL 2024 Findings paper "Generalization-Enhanced Code Vulnerability Detection via Multi-Task Instruction Fine-Tu…☆49Updated last year
- open science repo of "Neural Transfer Learning for Repairing Security Vulnerabilities in C Code" https://arxiv.org/pdf/2104.08308☆64Updated last year
- The official repository of "GraphSPD: Graph-Based Security Patch Detection with Enriched Code Semantics". The paper will appear in the IE…☆46Updated last year
- VFCFinder: Searching for the Missing Vulnerability Fixing Commits☆29Updated last year
- MoreFixes: A Large-Scale Dataset of CVE Fix Commits Mined through Enhanced Repository Discovery☆35Updated 3 months ago
- YuraScanner☆44Updated 5 months ago
- CleanVul: Automatic Function-Level Vulnerability Detection in Code Commits Using LLM Heuristics☆14Updated 4 months ago
- Resources for our ICSE'24 poster: Prompt-Enhanced Software Vulnerability Detection Using ChatGPT.☆25Updated last year