HaHarden / CPGPractiseLinks
Some test samples for CPG execution logic.
☆20Updated last year
Alternatives and similar repositories for CPGPractise
Users that are interested in CPGPractise are comparing it to the libraries listed below
Sorting:
- ☆29Updated 3 years ago
- Taint analysis implementation based on Heros and Soot☆45Updated last year
- Auto-generated CodeQL rules for matching CVE vulnerabilities and variants.☆182Updated last year
- Detecting Flow of Sensitive Data in Mini-Programs with Static Taint Analysis☆80Updated last year
- ☆27Updated last year
- 静态分析笔记 Static-Analysis-Notes 程序分析笔记 资源分享☆186Updated 2 years ago
- oh my soot !☆92Updated 3 years ago
- A benchmark to evaluate taint analysis☆28Updated 3 years ago
- ☆43Updated 2 years ago
- Precision-guided context sensitivity for pointer analysis☆61Updated 2 years ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆14Updated 3 months ago
- SecCodeBench is a benchmark suite focusing on evaluating the security of code generated by large language models (LLMs).☆75Updated last month
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆72Updated last year
- Corax for Java: A general static analysis framework for java code checking.☆253Updated 11 months ago
- A structure-aware grey box fuzzer based on modeling the input processing logic.☆172Updated last year
- 静态分析及代码审计自动化相关资料收集☆298Updated 3 years ago
- A declarative static analysis tool for jvm bytecode based Datalog like CodeQL☆344Updated last year
- a dataflow analysis framework implemented in Go, like soot☆36Updated 3 years ago
- YASA-UAST is an intermediate representation structure for multi-language program analysis. The UAST-Parser parses code from different pro…☆52Updated this week
- 《深入理解Semgrep》Finding vulnerabilities with Semgrep.☆57Updated 2 years ago
- Qilin: A New Framework for Supporting Fine-Grained Context-Sensitivity in Java Pointer Analysis☆145Updated last month
- 一个搜索网络安全领域顶会论文的小工具☆92Updated 3 months ago
- A benchmark for Java gadget chain detecting algorithms.☆13Updated 4 months ago
- YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, d…☆167Updated this week
- ☆24Updated 2 months ago
- An automated static taint analysis tool for the Lua web framework.☆21Updated last year
- A data pool-aware static analyzer to detect cross-layer threats in Android apps.☆13Updated last year
- Efficient and Precise Pointer-Tracking Data-Flow Framework☆66Updated 11 months ago
- Artifact for ICSE 2023☆50Updated 3 years ago
- ☆29Updated 6 months ago