HexHive / CrystallizerLinks
A hybrid analysis framework to aid in uncovering deserialization vulnerabilities
☆15Updated last year
Alternatives and similar repositories for Crystallizer
Users that are interested in Crystallizer are comparing it to the libraries listed below
Sorting:
- A GPT-Based Fuzz Driver Generator☆48Updated 2 years ago
- ☆43Updated 2 years ago
- A manually vetted dataset for security vulnerability detection in Java projects☆80Updated 3 months ago
- A deep learning model for localizing bugs in C/C++ source code (USENIX'23)☆153Updated 2 years ago
- ☆18Updated last year
- Parsing-based Analyzer☆57Updated 5 months ago
- A benchmark for Java gadget chain detecting algorithms.☆14Updated 5 months ago
- MINER provided by the paper "MINER: A Hybrid Data-Driven Approach for REST API Fuzzing"☆42Updated 2 years ago
- Assisting Static Analysis with Large Language Models: A ChatGPT Experiment☆36Updated 2 years ago
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆72Updated last year
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆12Updated last year
- ☆27Updated last year
- Python library for CPGQL server☆37Updated last year
- Qilin: A New Framework for Supporting Fine-Grained Context-Sensitivity in Java Pointer Analysis☆145Updated last month
- Signature-based Static Analysis for Detecting Recurring Vulnerabilities☆49Updated last year
- CKGFuzzer: LLM-Based Fuzz Driver Generation Enhanced By Code Knowledge Graph☆121Updated 9 months ago
- AFL/AFL++ version FishFuzz☆93Updated 8 months ago
- ☆29Updated 6 months ago
- HiddenCPG: Large-Scale Vulnerable Clone Detection Using Subgraph Isomorphism of Code Property Graphs☆43Updated 3 years ago
- Efficient and Precise Pointer-Tracking Data-Flow Framework☆68Updated 11 months ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆14Updated 3 months ago
- A browser fuzzer augmented by API mod-ref relations☆34Updated last year
- An automated static taint analysis tool for the Lua web framework.☆22Updated last year
- tool of llm-based indirect-call analyzer☆32Updated 9 months ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆160Updated last year
- Goshawk is a static analyze tool to detect memory corruption bugs in C source codes. It utilizes NLP to infer custom memory management fu…☆102Updated last year
- 记录自己在看 afl 源码时候的一些笔记和想法,还有一些自己觉得有意思的魔改。2020年12月2日update:添加混合模糊测试目录☆110Updated 4 years ago
- ☆56Updated 2 years ago
- Witcher is the first framework for using AFL to fuzz web applications.☆102Updated last year
- ☆48Updated last year