Invizory / taintflow
TaintFlow, a framework for JavaScript dynamic information flow analysis.
☆17Updated 2 years ago
Alternatives and similar repositories for taintflow:
Users that are interested in taintflow are comparing it to the libraries listed below
- Performant taint analysis for Node.js☆49Updated 5 months ago
- ☆29Updated 3 months ago
- ☆20Updated 2 years ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆151Updated 11 months ago
- Static data flow-based analysis of JavaScript files to detect syntactic clones☆22Updated 4 years ago
- COVA - A static analysis tool to compute path conditions☆32Updated 2 years ago
- A Cross-Language Dynamic Information Flow Analysis.☆24Updated 2 years ago
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆22Updated 3 years ago
- Instrumentation framework for Node.js compliant to ECMAScript 2020 based on GraalVM.☆53Updated 3 months ago
- ☆27Updated last year
- Soot-based taint analysis with internal Java fluent interface for security specifications in fluentTQL implemented with MagpieBridge to s…☆17Updated last month
- Statically Detecting Vulnerable Data Flows in Browser Extensions at Scale☆71Updated 3 years ago
- Source code for ACM CCS 2020 Paper PMForce: Systematically Analyzing postMessage Handlers at Scale☆17Updated 3 years ago
- 模糊测试种子库 comprehensive croups for fuzzing seeds with carfefully selected(rate=coverage/filesize)☆21Updated 3 years ago
- Source code of MEUZZ fuzzer☆44Updated 3 years ago
- A set of Code-ql/Joern queries to find vulnerabilities☆56Updated 3 years ago
- ☆10Updated 4 years ago
- A browser fuzzer augmented by API mod-ref relations☆31Updated 10 months ago
- Optimizing Directed Fuzzing via Target-tailored Program State Restriction☆28Updated last year
- ☆25Updated 11 months ago
- A collection of JavaScript test suites from JavaScript engine & Test262 repositories.☆21Updated 4 years ago
- Testability Pattern Catalogs for SAST☆29Updated 10 months ago
- ☆20Updated 6 years ago
- This is the project of LearnAFL.☆27Updated 4 years ago
- MINER provided by the paper "MINER: A Hybrid Data-Driven Approach for REST API Fuzzing"☆37Updated last year
- Assisting Static Analysis with Large Language Models: A ChatGPT Experiment☆30Updated last year
- ☆24Updated last year
- Run fuzzing experiments in Docker☆99Updated 3 years ago
- An external project example using SVF as a library☆20Updated 3 months ago
- Implementing taint tracking in WebAssembly as a part of the V8 Javascript Engine.☆21Updated 6 years ago