Fraunhofer-AISEC / codyze
Codyze is a static analyzer for Java, C, C++ based on code property graphs
☆87Updated 2 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for codyze
- Binary rewriting approach with fork server support to fuzz Java applications with afl-fuzz.☆88Updated 6 years ago
- Efficient and Precise Pointer-Tracking Data-Flow Framework☆66Updated 7 months ago
- Plume is a code representation benchmarking library with options to extract the AST from Java bytecode and store the result in various gr…☆70Updated 3 weeks ago
- Soot-based taint analysis with internal Java fluent interface for security specifications in fluentTQL implemented with MagpieBridge to s…☆16Updated 7 months ago
- A collection of test cases in the Java language. It contains examples for 112 different CWEs.☆52Updated 3 years ago
- Neo4J visualisation tool for the Code Property Graph☆14Updated 3 years ago
- CogniCrypt_SAST: CrySL-to-Static Analysis Compiler☆67Updated this week
- Home page of project "KB"☆113Updated last week
- Joana - Information Flow Control for Java☆91Updated 2 years ago
- IFDS/IDE Solver for Soot and other frameworks☆231Updated last year
- AFL-based fuzzing for Java☆234Updated 4 years ago
- a basic Gradle configuration to get started with WALA☆28Updated last month
- The official repo of Doop, the declarative pointer analysis framework.☆164Updated 2 weeks ago
- Analyse package dependency networks at the call graph level☆92Updated 11 months ago
- Phosphor: Dynamic Taint Tracking for the JVM☆166Updated 2 months ago
- Doop - Framework for Java Pointer and Taint Analysis☆17Updated 5 years ago
- Securibench Micro is a benchmark for static analysis tools for security.☆26Updated 6 years ago
- Java taint propagation for java. Define tainted sources, sanitizer methods and sinks via aspects.☆27Updated 6 years ago
- COVA - A static analysis tool to compute path conditions☆32Updated last year
- Qilin: A New Framework for Supporting Fine-Grained Context-Sensitivity in Java Pointer Analysis☆123Updated 2 months ago
- A dynamic symbolic analysis tool for Java☆113Updated 5 years ago
- Source Code Vulnerability Detection Tools(SCVDT)provides a vulnerable code database, vulnerability detection service for Java and C/C++ p…☆110Updated 3 years ago
- ReDeBug Source Code.☆24Updated 10 months ago
- Efficient and Precise Pointer-Tracking Data-Flow Framework☆41Updated 3 years ago
- Parser utility to generate ASTs from PHP source code suitable to be processed by Joern.☆34Updated 4 years ago
- TamiFlex facilitates static analysis of programs that use reflection and custom class loaders☆42Updated 3 years ago
- ☆11Updated 6 years ago
- A points-to and alias analysis benchmark suite☆36Updated 6 years ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆121Updated 2 years ago
- Testability Pattern Catalogs for SAST☆29Updated 7 months ago