Fraunhofer-AISEC / cpg
A library to extract Code Property Graphs from C/C++, Java, Go, Python, Ruby and every other language through LLVM-IR.
☆325Updated this week
Alternatives and similar repositories for cpg
Users that are interested in cpg are comparing it to the libraries listed below
Sorting:
- Code Property Graph: specification, query language, and utilities☆508Updated this week
- Vul4J: A Dataset of Reproducible Java Vulnerabilities☆85Updated 2 months ago
- PROGEX (Program Graph Extractor); a cross platform tool for extracting graphical program representations from software source code☆85Updated 3 years ago
- Qilin: A New Framework for Supporting Fine-Grained Context-Sensitivity in Java Pointer Analysis☆134Updated last month
- ☆99Updated 6 months ago
- This repository is to support contributions for tools and new data entries for the D2A dataset hosted in DAX☆71Updated 2 years ago
- A neurosymbolic framework for vulnerability detection in code☆69Updated 3 weeks ago
- A deep learning model for localizing bugs in C/C++ source code (USENIX'23)☆150Updated last year
- A C/C++ Code Vulnerability Dataset with Code Changes and CVE Summaries☆297Updated 4 years ago
- A collection of test cases in the Java language. It contains examples for 112 different CWEs.☆54Updated 3 years ago
- ☆138Updated 5 months ago
- Efficient and Precise Pointer-Tracking Data-Flow Framework☆66Updated 5 months ago
- ☠️ Ground-truth dataset for vulnerability prediction (known research datasets and data sources included such as NVD, CVE Details and OSV)…☆93Updated last year
- Scalpel: The Python Static Analysis Framework☆309Updated last year
- Home page of project "KB"☆125Updated last month
- LLMDFA: Analyzing Dataflow in Code with Large Language Models (NeurIPS 2024)☆111Updated 2 months ago
- ☆205Updated 9 months ago
- A manually vetted dataset for security vulnerability detection in Java projects☆50Updated 3 weeks ago
- IFDS/IDE Solver for Soot and other frameworks☆241Updated last year
- The official repo of Doop, the declarative pointer analysis framework.☆178Updated 2 months ago
- FUNDED is a novel learning framework for building vulnerability detection models.☆130Updated last year
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆154Updated last year
- VulDeePecker: A Deep Learning-Based System for Vulnerability Detection☆326Updated 4 years ago
- ☆55Updated last year
- Statement-level deep learning model for automated software vulnerability detection in C/C++ (Accepted in MSR 2022)☆72Updated 2 years ago
- DeepWukong: Statically Detecting Software Vulnerabilities Using Deep Graph Neural Network☆105Updated 2 years ago
- Artifact accompanying our ICSE '22 paper "Practical Automated Detection of Malicious npm Packages"☆44Updated 3 years ago
- Deep learning code semantic similarity☆63Updated 5 years ago
- MegaVul - The largest, high-quality, extensible, continuously updated, C/C++/Java vulnerability dataset☆73Updated 4 months ago
- A program slicer for Java, based on the system dependence graph (SDG).☆66Updated last year