Samsung / CredDataLinks
CredData is a set of files including credentials in open source projects. CredData includes suspicious lines with manual review results and more information such as credential types for each suspicious line. CredData can be used to develop new tools or improve existing tools. Furthermore, using the benchmark result of the CredData, users can ch…
☆42Updated last week
Alternatives and similar repositories for CredData
Users that are interested in CredData are comparing it to the libraries listed below
Sorting:
- A dataset of software supply chain compromises. Please help us maintain it!☆129Updated 2 years ago
- Trail of Bits Testing Handbook☆78Updated last week
- atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.☆71Updated 2 weeks ago
- CredSweeper is a tool to detect credentials in any directories or files. CredSweeper could help users to detect unwanted exposure of cred…☆131Updated last week
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and o…☆77Updated 3 weeks ago
- Mayhem example templates for programming languages and fuzzers that you love!☆33Updated last week
- ☆139Updated 2 months ago
- A community collection of security reviews of open source software components.☆95Updated last year
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆150Updated last year
- Low-effort reachability analysis for third-party code vulnerabilities.☆21Updated 2 years ago
- VINCE is the Vulnerability Information and Coordination Environment developed and used by the CERT Coordination Center to improve coordin…☆73Updated last month
- future-proof vulnerability detection benchmark, based on CVEs in open-source repos☆59Updated this week
- OSS-Fuzz vulnerabilities for OSV.☆160Updated this week
- Code Hierarchy Exploration Net (chen)☆21Updated 2 weeks ago
- ☆48Updated last year
- Feed parsing for language package manager updates☆79Updated 8 months ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆60Updated 2 months ago
- An open-source dataset of malicious software packages found in the wild, 100% vetted by humans.☆216Updated this week
- ☆26Updated 2 years ago
- Scan pypi for typosquatting☆38Updated 2 years ago
- A Python library and command line interface for CVE Services.☆68Updated this week
- ☆28Updated 2 months ago
- ☆15Updated 5 years ago
- CveXplore☆42Updated 2 weeks ago
- A web browser with dynamic data-flow tracking enabled in the Javascript engine and DOM, based on Mozilla Firefox (https://github.com/mozi…☆115Updated this week
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.1, purl, and vers…☆124Updated last week
- CodeQL queries developed by Trail of Bits☆109Updated 2 months ago
- Modular framework for file information extraction and dependency analysis to generate accurate SBOMs☆33Updated this week
- Static code analysis of refpolicy style SELinux policy☆45Updated 4 months ago
- ATLAS tactics, techniques, and case studies data☆78Updated 3 months ago