Song-Li / ODGen
ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.
☆154Updated last year
Alternatives and similar repositories for ODGen:
Users that are interested in ODGen are comparing it to the libraries listed below
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆23Updated 3 years ago
- ☆31Updated 7 months ago
- ☆28Updated 2 years ago
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆95Updated last year
- [CCS'24] An LLM-based, fully automated fuzzing tool for option combination testing.☆76Updated 3 weeks ago
- ☆48Updated 2 years ago
- ☆38Updated 2 years ago
- ☆28Updated last week
- Testability Pattern Catalogs for SAST☆30Updated 2 months ago
- Modular static malicious JavaScript detection system☆69Updated 4 years ago
- MINER provided by the paper "MINER: A Hybrid Data-Driven Approach for REST API Fuzzing"☆39Updated 2 years ago
- A deep learning model for localizing bugs in C/C++ source code (USENIX'23)☆150Updated last year
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆105Updated 4 months ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆133Updated 2 years ago
- Source Code Vulnerability Detection Tools(SCVDT)provides a vulnerable code database, vulnerability detection service for Java and C/C++ p…☆116Updated 3 years ago
- ☆26Updated last year
- ISSTA'23 - Third-party Library Dependency for Large-scale SCA in the C/C++ Ecosystem: How Far Are We?☆29Updated last year
- The repository has collected about 10,000 malicious pypi packages. This dataset is the work of the ASE 2023 paper "An Empirical Study of…☆88Updated this week
- HiddenCPG: Large-Scale Vulnerable Clone Detection Using Subgraph Isomorphism of Code Property Graphs☆43Updated 2 years ago
- Large Language Model guided Protocol Fuzzing (NDSS'24)☆332Updated 7 months ago
- CKGFuzzer: LLM-Based Fuzz Driver Generation Enhanced By Code Knowledge Graph☆72Updated 3 months ago
- This repo list the core literature in the field of fuzzing test, large language model, and LLM-based fuzzer. Most of papers are selected …☆52Updated last year
- ☆15Updated 3 years ago
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆67Updated 8 months ago
- A GPT-Based Fuzz Driver Generator☆46Updated last year
- FirmSec Dataset☆34Updated 2 years ago
- Witcher is the first framework for using AFL to fuzz web applications.☆87Updated last year
- Link: Black-Box Detection of Cross-Site Scripting Vulnerabilities Using Reinforcement Learning☆22Updated 3 years ago
- A set of Code-ql/Joern queries to find vulnerabilities☆58Updated 3 years ago
- Static data flow-based analysis of JavaScript files to detect syntactic clones☆23Updated 5 years ago