CodeIntelligenceTesting / jazzer.jsLinks
Coverage-guided, in-process fuzzing for Node.js
☆332Updated 2 months ago
Alternatives and similar repositories for jazzer.js
Users that are interested in jazzer.js are comparing it to the libraries listed below
Sorting:
- JavaScript/TypeScript static analyzer for call graph construction, library usage pattern matching, and vulnerability exposure analysis☆417Updated 2 weeks ago
- Performant taint analysis for Node.js☆56Updated last year
- coverage guided fuzz testing for javascript☆611Updated 4 years ago
- A Dynamic Symbolic Execution (DSE) engine for JavaScript. ExpoSE is highly scalable, compatible with recent JavaScript standards, and sup…☆218Updated last year
- Fuzz Introspector -- introspect, extend and optimise fuzzers☆445Updated this week
- Use Snow to finally secure your web app's same origin realms!☆115Updated 9 months ago
- SARIF Microsoft Visual Studio Code extension☆132Updated 2 weeks ago
- Derive property based testing fast-check into a fuzzer for REST APIs☆39Updated 4 years ago
- TC39 proposal for mitigating prototype pollution☆52Updated 2 years ago
- Instrumentation framework for Node.js compliant to ECMAScript 2020 based on GraalVM.☆59Updated last year
- CodeQL queries developed by Trail of Bits☆144Updated 3 weeks ago
- A web browser with dynamic data-flow tracking enabled in the Javascript engine and DOM, based on Mozilla Firefox (https://github.com/mozi…☆155Updated 2 weeks ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆239Updated 5 months ago
- GraphFuzz is an experimental framework for building structure-aware, library API fuzzers.☆270Updated 2 years ago
- TaintFlow, a framework for JavaScript dynamic information flow analysis.☆18Updated 3 years ago
- get popular npm packages☆42Updated 10 months ago
- A CLI and library which tests helps score how vulnerable a regex pattern is to ReDoS attacks. Supported in the browser, Node and Deno.☆52Updated this week
- FitM, the Fuzzer in the Middle, can fuzz client and server binaries at the same time using userspace snapshot-fuzzing and network emulati…☆291Updated 3 years ago
- Distributed fuzzing platform☆46Updated 2 years ago
- Detect vulnerable regexes in your project. REDOS, catastrophic backtracking.☆339Updated 4 years ago
- Dynamic analysis framework for JavaScript☆479Updated 3 weeks ago
- Statically Detecting Vulnerable Data Flows in Browser Extensions at Scale☆79Updated 4 years ago
- Create code bookmarks and code highlights with a click.☆226Updated last week
- Creates a CFG from JavaScript source code.☆69Updated last year
- Trail of Bits Testing Handbook - appsec.guide☆92Updated last week
- SAST + LLM Interprocedural Context Extractor☆176Updated 3 months ago
- A study of V8 internals.☆76Updated 5 years ago
- Secure DOM trees isolation and encapsulation leveraging ShadowDOM☆36Updated 11 months ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆160Updated last year
- Source code for ACM CCS 2020 Paper PMForce: Systematically Analyzing postMessage Handlers at Scale☆18Updated 4 years ago