GitHubSecurityLab / gh-mrva
Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)
☆53Updated 9 months ago
Alternatives and similar repositories for gh-mrva:
Users that are interested in gh-mrva are comparing it to the libraries listed below
- CodeQL database manager☆48Updated last year
- GH CLI CodeQL Scan Extension☆19Updated 3 months ago
- My CodeQL queries collection☆96Updated last year
- Custom / Experimental CodeQL queries☆37Updated 2 years ago
- Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations☆24Updated 8 months ago
- Ready to use docker image for CodeQL☆88Updated last year
- ☆59Updated 2 years ago
- Jupyter Kernel for CodeQL☆14Updated last year
- Collection of community-driven CodeQL query, library and extension packs☆129Updated this week
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 2 years ago
- ☆70Updated 2 years ago
- [Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instea…☆81Updated 8 months ago
- Python bindings for CodeQL CLI☆52Updated 3 years ago
- Proof of Concepts for unsafe deserialization in Ruby☆17Updated 3 months ago
- ☆34Updated 2 years ago
- CodeQL model generation for Go.☆17Updated 3 years ago
- A proof-of-concept tool for detection and exploitation Object Injection Vulnerabilities in .NET applications☆62Updated 4 years ago
- My solution for GitHub Security Lab CTF 4: CodeQL and Chill - The Java Edition☆19Updated 4 years ago
- Intentionally vulnerable Go web app.☆43Updated last week
- Compiled dataset of Java deserialization CVEs☆61Updated 4 years ago
- Same Origin XSS challenge☆56Updated 2 years ago
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆112Updated last year
- A HTTP PoC Endpoint for cve-2020-5260 which can be deployed to Heroku☆37Updated 4 years ago
- Sample Spring application to Demonstrate the Gateway Actuator☆48Updated 2 years ago
- Example of passing file descriptors into a container to perform a privilege escalation on the host☆23Updated 4 years ago
- GreHack 2021 CodeQL for Java workshop☆75Updated 3 years ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆35Updated last month
- Grammar-based HTTP/2 fuzzer with mutation ability☆42Updated 2 years ago
- Library for manually creating Java serialization data.☆28Updated last year
- A variant analysis and visualisation tool that scans codebases for similar vulnerabilities☆70Updated 2 years ago