Invizory / taintflowLinks
TaintFlow, a framework for JavaScript dynamic information flow analysis.
☆18Updated 2 years ago
Alternatives and similar repositories for taintflow
Users that are interested in taintflow are comparing it to the libraries listed below
Sorting:
- Performant taint analysis for Node.js☆55Updated last year
- COVA - A static analysis tool to compute path conditions☆37Updated 3 months ago
- This novel black-box web vulnerability scanner attempts to infer the state machine of the web application.☆19Updated 5 years ago
- Static data flow-based analysis of JavaScript files to detect syntactic clones☆23Updated 5 years ago
- Statically Detecting Vulnerable Data Flows in Browser Extensions at Scale☆76Updated 3 years ago
- CRash Scope (CRScope) is a ML-guided crash classifier of a given JavaScript engine crash-dump file.☆13Updated 6 years ago
- Soot-based taint analysis with internal Java fluent interface for security specifications in fluentTQL implemented with MagpieBridge to s…☆18Updated 9 months ago
- Source code for ACM CCS 2020 Paper PMForce: Systematically Analyzing postMessage Handlers at Scale☆18Updated 4 years ago
- ☆29Updated 6 months ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆157Updated last year
- ☆54Updated 7 years ago
- ☆19Updated 6 years ago
- This is the project of LearnAFL.☆28Updated 5 years ago
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆25Updated 3 years ago
- A collection of JavaScript test suites from JavaScript engine & Test262 repositories.☆21Updated 5 years ago
- A set of Code-ql/Joern queries to find vulnerabilities☆65Updated 4 years ago
- 模糊测试种子库 comprehensive croups for fuzzing seeds with carfefully selected(rate=coverage/filesize)☆23Updated 4 years ago
- Fuzz testing framework for binary programs using AI☆52Updated 2 years ago
- Codyze is a static analyzer for Java, C, C++ based on code property graphs☆89Updated 9 months ago
- Plume is a code representation benchmarking library with options to extract the AST from Java bytecode and store the result in various gr…☆75Updated last year
- ReDeBug Source Code.☆24Updated last year
- A Cross-Language Dynamic Information Flow Analysis.☆25Updated 2 years ago
- Montage: A Neural Network Language Model-Guided JavaScript Engine Fuzzer☆87Updated last year
- ☆18Updated 2 years ago
- List the real world programs evaluated in fuzzing papers.☆56Updated 6 years ago
- Modular static malicious JavaScript detection system☆74Updated 4 years ago
- VUDDY: A Scalable and Accurate Vulnerable Code Clone Detector (S&P'17)☆51Updated 9 months ago
- ☆47Updated 5 years ago
- ☆10Updated 5 years ago
- A DOM fuzzer☆153Updated 3 years ago