Fraunhofer-AISEC / codyze
Codyze is a static analyzer for Java, C, C++ based on code property graphs
☆87Updated this week
Related projects ⓘ
Alternatives and complementary repositories for codyze
- Binary rewriting approach with fork server support to fuzz Java applications with afl-fuzz.☆88Updated 6 years ago
- Efficient and Precise Pointer-Tracking Data-Flow Framework☆66Updated 8 months ago
- Soot-based taint analysis with internal Java fluent interface for security specifications in fluentTQL implemented with MagpieBridge to s…☆16Updated 8 months ago
- A collection of test cases in the Java language. It contains examples for 112 different CWEs.☆52Updated 3 years ago
- Plume is a code representation benchmarking library with options to extract the AST from Java bytecode and store the result in various gr…☆70Updated last month
- a basic Gradle configuration to get started with WALA☆28Updated last month
- Home page of project "KB"☆113Updated 3 weeks ago
- Joana - Information Flow Control for Java☆91Updated 2 years ago
- Source Code Vulnerability Detection Tools(SCVDT)provides a vulnerable code database, vulnerability detection service for Java and C/C++ p…☆110Updated 3 years ago
- COVA - A static analysis tool to compute path conditions☆32Updated 2 years ago
- ReDeBug Source Code.☆24Updated 11 months ago
- The official repo of Doop, the declarative pointer analysis framework.☆164Updated this week
- IFDS/IDE Solver for Soot and other frameworks☆232Updated last year
- CogniCrypt_SAST: CrySL-to-Static Analysis Compiler☆67Updated this week
- A dynamic symbolic analysis tool for Java☆114Updated 5 years ago
- Phosphor: Dynamic Taint Tracking for the JVM☆166Updated 3 months ago
- Securibench Micro is a benchmark for static analysis tools for security.☆26Updated 6 years ago
- AFL-based fuzzing for Java☆234Updated 4 years ago
- Parser utility to generate ASTs from PHP source code suitable to be processed by Joern.☆34Updated 4 years ago
- A static analysis tool for Java programs, based on the theory of code property graphs.☆16Updated last year
- VUDDY: A Scalable and Accurate Vulnerable Code Clone Detector (S&P'17)☆51Updated 5 months ago
- Study WALA and static code analysis . This project introduces the required knowledge and study roadmap.☆20Updated 3 years ago
- Neo4J visualisation tool for the Code Property Graph☆14Updated 3 years ago
- ☆23Updated 9 months ago
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆22Updated 2 years ago
- Qilin: A New Framework for Supporting Fine-Grained Context-Sensitivity in Java Pointer Analysis☆123Updated 3 months ago
- Doop - Framework for Java Pointer and Taint Analysis☆17Updated 5 years ago
- Efficient and Precise Pointer-Tracking Data-Flow Framework☆41Updated 3 years ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆122Updated 2 years ago
- Python bindings for Shimple/Jimple IR from Soot.☆42Updated 10 months ago