HexHive / CrystallizerLinks
A hybrid analysis framework to aid in uncovering deserialization vulnerabilities
☆15Updated last year
Alternatives and similar repositories for Crystallizer
Users that are interested in Crystallizer are comparing it to the libraries listed below
Sorting:
- A manually vetted dataset for security vulnerability detection in Java projects☆77Updated 2 months ago
- ☆43Updated 2 years ago
- A GPT-Based Fuzz Driver Generator☆48Updated last year
- A deep learning model for localizing bugs in C/C++ source code (USENIX'23)☆153Updated 2 years ago
- HiddenCPG: Large-Scale Vulnerable Clone Detection Using Subgraph Isomorphism of Code Property Graphs☆43Updated 3 years ago
- MINER provided by the paper "MINER: A Hybrid Data-Driven Approach for REST API Fuzzing"☆41Updated 2 years ago
- Parsing-based Analyzer☆52Updated 4 months ago
- Assisting Static Analysis with Large Language Models: A ChatGPT Experiment☆36Updated 2 years ago
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆72Updated last year
- A benchmark for Java gadget chain detecting algorithms.☆13Updated 4 months ago
- 记录自己在看 afl 源码时候的一些笔记和想法,还有一些自己觉得有意思的魔改。2020年12月2日update:添加混合模糊测试目录☆110Updated 4 years ago
- ☆29Updated 5 months ago
- Python library for CPGQL server☆37Updated last year
- ☆27Updated last year
- Qilin: A New Framework for Supporting Fine-Grained Context-Sensitivity in Java Pointer Analysis☆145Updated last month
- ☆17Updated 11 months ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆14Updated 3 months ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆157Updated last year
- CKGFuzzer: LLM-Based Fuzz Driver Generation Enhanced By Code Knowledge Graph☆116Updated 8 months ago
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆12Updated last year
- Efficient and Precise Pointer-Tracking Data-Flow Framework☆66Updated 10 months ago
- tool of llm-based indirect-call analyzer☆31Updated 8 months ago
- LLMDFA: Analyzing Dataflow in Code with Large Language Models (NeurIPS 2024)☆154Updated last week
- This repo list the core literature in the field of fuzzing test, large language model, and LLM-based fuzzer. Most of papers are selected …☆53Updated last year
- ☆20Updated last year
- Goshawk is a static analyze tool to detect memory corruption bugs in C source codes. It utilizes NLP to infer custom memory management fu…☆99Updated last year
- ☆22Updated 3 years ago
- Hey folks, this is a repository for papers on LLM for Vuln. Detection area☆68Updated 6 months ago
- A browser fuzzer augmented by API mod-ref relations☆34Updated last year
- ☆53Updated 2 years ago