LLNL / Surfactant
Modular framework for file information extraction and dependency analysis to generate accurate SBOMs
☆28Updated this week
Alternatives and similar repositories for Surfactant
Users that are interested in Surfactant are comparing it to the libraries listed below
Sorting:
- ☆26Updated 4 months ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆28Updated 2 months ago
- Automated vulnerability discovery and annotation☆67Updated 9 months ago
- atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.☆65Updated last week
- CVE querying library and utility that uses a local store syncing directly to the National Vulnerability Database☆22Updated last year
- Trail of Bits Testing Handbook☆72Updated last month
- A security-first linter for code that shouldn't need linting☆16Updated last year
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆74Updated last year
- ☆72Updated last week
- VINCE is the Vulnerability Information and Coordination Environment developed and used by the CERT Coordination Center to improve coordin…☆65Updated this week
- Code Pathfinder, the open-source alternative to GitHub CodeQL built with GoLang. Built for advanced structural search, derive insights, f…☆59Updated 2 weeks ago
- Code Hierarchy Exploration Net (chen)☆20Updated last week
- Documentation of Semgrep: a fast, open-source, static analysis tool.☆40Updated this week
- Coverage-Guided Greybox Distributed Fuzzer☆130Updated 3 weeks ago
- Manager of third-party sources of Semgrep rules 🗂☆81Updated 9 months ago
- CITL's static analysis engine for native code artifacts☆20Updated 4 years ago
- A place to systematically store software bill of materials (SBOM) documents.☆46Updated last year
- Leak patterns for LeakTK tools to use☆8Updated this week
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and o…☆75Updated 2 weeks ago
- FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.☆50Updated 2 months ago
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆55Updated 5 months ago
- A meta-database collecting resources that compile lists of breaches☆18Updated 6 months ago
- Scan pypi for typosquatting☆38Updated 2 years ago
- ☆22Updated 3 years ago
- Publications from the eBPF foundation☆23Updated 6 months ago
- Workshop for finding software vulnerabilities using open source tools, which includes a Goat-like Python and C application☆26Updated 8 months ago
- DefectDojo Community Content☆18Updated 7 months ago
- CVE.ICU code.☆42Updated this week
- A CLI tool to analyze the behavior of your dependencies using listen.dev☆12Updated last week
- EPSS(Exploit Prediction Scoring System) API client☆18Updated this week