NodeSecure / js-x-rayLinks
JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.
☆259Updated last week
Alternatives and similar repositories for js-x-ray
Users that are interested in js-x-ray are comparing it to the libraries listed below
Sorting:
- Mitigate security concerns of Dependency Confusion supply chain security risks☆49Updated 4 months ago
- njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.☆417Updated last year
- Programmatically fetch security vulnerabilities with one or many strategies (NPM Audit, Sonatype, Snyk, Node.js DB).☆30Updated last week
- ⚡️ A package API to run a static analysis of your module's dependencies. This is the CLI engine!☆36Updated this week
- NodeJS runtime protection for supply chain attacks☆142Updated 3 years ago
- 🌍 Normalized repository URLs for every package in the npm registry. Updated daily.☆91Updated this week
- Coverage-guided, in-process fuzzing for Node.js☆321Updated last month
- Find security vulnerabilities in open source npm packages while you code☆211Updated 3 years ago
- JavaScript security CLI that allow you to deeply analyze the dependency tree of a given package or local Node.js project.☆378Updated this week
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆302Updated this week
- A zoo for malicious NPM packages☆20Updated 2 years ago
- Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javascript code.☆333Updated last year
- Detect vulnerable regexes in your project. REDOS, catastrophic backtracking.☆337Updated 3 years ago
- Easy auditing & sandboxing for your JavaScript dependencies 🪱☆253Updated 2 years ago
- A curated list of awesome browser security learning material.☆145Updated 3 years ago
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆59Updated 7 months ago
- Public disclosure channel for security vulnerabilities☆18Updated 4 months ago
- A Node.js vulnerability finding tool.☆96Updated 3 months ago
- 🔤 A list of all the public package names on npm. Updated daily.☆280Updated this week
- A web client port-scanner written in GO, that supports the WASM/WASI interface for Browser WebAssembly runtime execution.☆157Updated 2 years ago
- Focused malicious code detection ruleset, with a high protection-to-noise ratio☆127Updated 8 months ago
- Test Case Generator Based on Branch Coverage and Fuzzing☆37Updated 2 years ago
- Use Snow to finally secure your web app's same origin realms!☆115Updated 7 months ago
- Manager of third-party sources of Semgrep rules 🗂☆90Updated last year
- A curated list of awesome GraphQL Security frameworks, libraries, software and resources☆341Updated last year
- Generic SAST Library☆132Updated 5 months ago
- A pattern for reasonably secure Electron applications☆73Updated 2 years ago
- 🔍A cutting edge context aware GraphQL API fuzzing tool!☆154Updated 2 months ago
- Find which of your direct GitHub dependencies is susceptible to RepoJacking attacks☆60Updated 3 years ago
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆280Updated 2 months ago