Fraunhofer-AISEC / cpg
A library to extract Code Property Graphs from C/C++, Java, Go, Python, Ruby and every other language through LLVM-IR.
☆287Updated this week
Related projects ⓘ
Alternatives and complementary repositories for cpg
- Code Property Graph: specification, query language, and utilities☆465Updated 2 weeks ago
- PROGEX (Program Graph Extractor); a cross platform tool for extracting graphical program representations from software source code☆83Updated 3 years ago
- ☆88Updated 3 weeks ago
- ☆51Updated 10 months ago
- FUNDED is a novel learning framework for building vulnerability detection models.☆127Updated 11 months ago
- IFDS/IDE Solver for Soot and other frameworks☆232Updated last year
- Qilin: A New Framework for Supporting Fine-Grained Context-Sensitivity in Java Pointer Analysis☆123Updated 3 months ago
- Phosphor: Dynamic Taint Tracking for the JVM☆168Updated 3 months ago
- A program slicer for Java, based on the system dependence graph (SDG).☆58Updated last year
- The official repo of Doop, the declarative pointer analysis framework.☆163Updated this week
- A deep learning model for localizing bugs in C/C++ source code (USENIX'23)☆137Updated last year
- ISSTA'23 - Third-party Library Dependency for Large-scale SCA in the C/C++ Ecosystem: How Far Are We?☆27Updated last year
- Creating Data Flow Graphs from java input classes☆44Updated 5 months ago
- Home page of project "KB"☆114Updated 3 weeks ago
- Vul4J: A Dataset of Reproducible Java Vulnerabilities☆68Updated 2 months ago
- A C/C++ Code Vulnerability Dataset with Code Changes and CVE Summaries☆242Updated 3 years ago
- Codyze is a static analyzer for Java, C, C++ based on code property graphs☆87Updated this week
- Efficient and Precise Pointer-Tracking Data-Flow Framework☆66Updated 8 months ago
- Scalpel: The Python Static Analysis Framework☆296Updated 7 months ago
- CVEfixes: Automated Collection of Vulnerabilities and Their Fixes from Open-Source Software☆204Updated 3 months ago
- This repository is to support contributions for tools and new data entries for the D2A dataset hosted in DAX☆65Updated 2 years ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆122Updated 2 years ago
- ☠️ Ground-truth dataset for vulnerability prediction (known research datasets and data sources included such as NVD, CVE Details and OSV)…☆83Updated last year
- A symbolic Java virtual machine for program analysis, verification and test generation☆104Updated last week
- ☆50Updated 3 years ago
- HiddenCPG: Large-Scale Vulnerable Clone Detection Using Subgraph Isomorphism of Code Property Graphs☆40Updated 2 years ago
- VulDeePecker: A Deep Learning-Based System for Vulnerability Detection☆305Updated 4 years ago
- A vulnerability patch gathering tool☆40Updated 5 years ago
- ☆41Updated 5 years ago
- A collection of test cases in the Java language. It contains examples for 112 different CWEs.☆52Updated 3 years ago