Konano / ReqsMinerLinks
[NDSS 2024] ReqsMiner is an innovative fuzzing framework developed to discover previously unexamined inconsistencies in CDN forwarding requests. The framework uses techniques derived from reinforcement learning to generate valid test cases, even with minimal feedback, and incorporates real field values into the grammar-based fuzzer.
☆21Updated last year
Alternatives and similar repositories for ReqsMiner
Users that are interested in ReqsMiner are comparing it to the libraries listed below
Sorting:
- ☆25Updated 3 years ago
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆70Updated 11 months ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆46Updated 2 years ago
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆95Updated last year
- ☆16Updated 2 years ago
- Artifact for ICSE 2023☆49Updated 2 years ago
- Auto-generated CodeQL rules for matching CVE vulnerabilities and variants.☆176Updated 9 months ago
- ReDoSHunter: A Combined Static and Dynamic Approach for Regular Expression DoS Detection☆79Updated 2 years ago
- FuzzCache: Optimizing Web Application Fuzzing Through Software-Based Data Cache (ACM CCS 2024)☆12Updated 8 months ago
- Parser utility to generate ASTs from PHP source code suitable to be processed by Joern.☆36Updated 5 years ago
- A set of Code-ql/Joern queries to find vulnerabilities☆63Updated 4 years ago
- ☆26Updated last year
- a dataflow analysis framework implemented in Go, like soot☆36Updated 2 years ago
- ☆64Updated 3 years ago
- A grey-box web application Fuzzer☆23Updated 11 months ago
- ☆38Updated 3 years ago
- Taint analysis implementation based on Heros and Soot☆45Updated last year
- CVE-2022-0185 POC and Docker and Analysis write up☆38Updated 3 years ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆13Updated last month
- 漏洞规则库是一个致力于帮助开发者识别和避免常见安全漏洞的开源项目。我们收集、整理和分析各类编程语言和常用库中的安全漏洞模式,并提供相应的防范措施和最佳实践。☆25Updated 3 weeks ago
- Fuzzing dictionaries for afl-fuzz/LibFuzzer☆90Updated 3 years ago
- This project runs a Model Context Protocol (MCP) server that wraps the CodeQL query server. It enables tools like [Cursor](https://cursor…☆95Updated 3 months ago
- ☆42Updated 2 years ago
- The fuzzing framework named SHADOWFUZZER to find clientside vulnerabilities when processing incoming MQTT messages.☆20Updated 2 years ago
- Detecting Flow of Sensitive Data in Mini-Programs with Static Taint Analysis☆76Updated last year
- 更好的包装pwntools,提高编写pwn题exp效率的工具☆28Updated 4 years ago
- Challenge attachments for RWCTF 3rd.☆92Updated 4 years ago
- Testability Tarpits: the Impact of Code Patterns on the Security Testing of Web Applications (NDSS 2022)☆25Updated last year
- writeups for XNUCA2020Qualifier☆70Updated 4 years ago
- Collate and collect binary related materials, including papers, tools, etc. Now,there are the following categories: 1、Fuzzing☆58Updated 6 years ago