KeyMagnetProject2025 / KeyMagnet
A semantic-based tool to detect credential leakage in mini-apps.
☆11Updated 8 months ago
Alternatives and similar repositories for KeyMagnet:
Users that are interested in KeyMagnet are comparing it to the libraries listed below
- ☆26Updated last year
- Detecting Flow of Sensitive Data in Mini-Programs with Static Taint Analysis☆74Updated last year
- This is the repository for the paper "Cross Miniapp Request Forgery"☆19Updated last year
- ☆16Updated 9 months ago
- FuzzCache: Optimizing Web Application Fuzzing Through Software-Based Data Cache (ACM CCS 2024)☆10Updated 6 months ago
- Auto-generated CodeQL rules for matching CVE vulnerabilities and variants.☆169Updated 7 months ago
- 一个搜索网络安全领域顶会论文的小工具☆86Updated 6 months ago
- Mini-program Cross Page Request Forgery (MiniCPRF) Analysis Tool.☆14Updated 6 months ago
- Some test samples for CPG execution logic.☆21Updated last year
- MiniTracker: Large-Scale Sensitive Information Tracking in Mini Apps.☆29Updated 5 months ago
- A curated list of Security Big4 papers for Privacy, Mobile Security and Access Control.☆13Updated 7 months ago
- ☆128Updated this week
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆67Updated 8 months ago
- CKGFuzzer: LLM-Based Fuzz Driver Generation Enhanced By Code Knowledge Graph☆72Updated 3 months ago
- ☆38Updated 2 years ago
- Artifact for ICSE 2023☆49Updated 2 years ago
- Writeups By Straw Hat☆55Updated last year
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆13Updated 4 months ago
- This project runs a Model Context Protocol (MCP) server that wraps the CodeQL query server. It enables tools like [Cursor](https://cursor…☆82Updated last month
- KernJC: Automated Vulnerable Environment Generation for Linux Kernel Vulnerabilities (Best Practical Paper Award of RAID 2024)☆61Updated 3 months ago
- A structure-aware grey box fuzzer based on modeling the input processing logic.☆169Updated 7 months ago
- IDA Hexrays To Joern☆38Updated 6 months ago
- A data pool-aware static analyzer to detect cross-layer threats in Android apps.☆11Updated last year
- CCF推荐会议论文的获取和推送☆16Updated 11 months ago
- 一个中文版本的 LibAFL 笔记,主要内容是 LibAFL 原理相关的内容,同时也附加一些 LibAFL 使用方面的 tips ,方便查阅和参考。☆30Updated last year
- CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸☆32Updated 2 years ago
- Archive of AAA CTF 2023 (XCTF competition)☆36Updated last year
- Taint analysis implementation based on Heros and Soot☆44Updated last year
- ☆25Updated 2 years ago
- [CCS'24] An LLM-based, fully automated fuzzing tool for option combination testing.☆76Updated 3 weeks ago