GeekMasher / security-codeqlLinks
CodeQL Security Queries
☆27Updated last week
Alternatives and similar repositories for security-codeql
Users that are interested in security-codeql are comparing it to the libraries listed below
Sorting:
- [Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instea…☆85Updated last year
- CodeQL zero to hero blog post series challenges☆160Updated 2 months ago
- Collection of community-driven CodeQL query, library and extension packs☆196Updated last week
- Testability Pattern Catalogs for SAST☆31Updated 10 months ago
- A curated list of awesome CodeQL resources.☆59Updated last week
- 🪐 A Database of Existing Security Vulnerabilities Patches to Enable Evaluation of Techniques (single-commit; multi-language)☆42Updated 8 months ago
- Source Code Vulnerability Detection Tools(SCVDT)provides a vulnerable code database, vulnerability detection service for Java and C/C++ p…☆118Updated 4 years ago
- A set of Code-ql/Joern queries to find vulnerabilities☆66Updated 4 years ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆47Updated 3 years ago
- VulZoo: A Comprehensive Vulnerability Intelligence Dataset | ASE 2024 Demo☆66Updated 9 months ago
- Codyze is a static analyzer for Java, C, C++ based on code property graphs☆91Updated 11 months ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆161Updated last year
- ☆18Updated 2 years ago
- Link: Black-Box Detection of Cross-Site Scripting Vulnerabilities Using Reinforcement Learning☆24Updated 3 years ago
- OSS-Fuzz vulnerabilities for OSV.☆167Updated this week
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆122Updated 2 years ago
- Soot-based taint analysis with internal Java fluent interface for security specifications in fluentTQL implemented with MagpieBridge to s…☆18Updated 10 months ago
- A neurosymbolic framework for vulnerability detection in code☆289Updated 3 weeks ago
- Artifact for ICSE 2023☆50Updated 3 years ago
- Auto-generated CodeQL rules for matching CVE vulnerabilities and variants.☆184Updated last year
- ☆30Updated 7 months ago
- The repository has collected about 10,000 malicious pypi packages. This dataset is the work of the ASE 2023 paper "An Empirical Study of…☆112Updated last month
- Witcher is the first framework for using AFL to fuzz web applications.☆103Updated 2 years ago
- Hey folks, this is a repository for papers on LLM for Vuln. Detection area☆72Updated 8 months ago
- YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, d…☆218Updated this week
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆97Updated 2 years ago
- CodeQL workshops for GitHub Universe☆96Updated 3 years ago
- CodeQL library and queries for iterator invalidation☆22Updated 4 years ago
- Testability Tarpits: the Impact of Code Patterns on the Security Testing of Web Applications (NDSS 2022)☆25Updated last year
- ☆60Updated 2 years ago