ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.
☆169Jan 29, 2024Updated 2 years ago
Alternatives and similar repositories for ODGen
Users that are interested in ODGen are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆25Nov 30, 2021Updated 4 years ago
- ☆31May 1, 2025Updated last year
- Modular static malicious JavaScript detection system☆76Jan 18, 2021Updated 5 years ago
- ☆28Jul 21, 2022Updated 4 years ago
- Artifacts of the paper "Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Content" in USENIX…☆19Aug 9, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Testability Tarpits: the Impact of Code Patterns on the Security Testing of Web Applications (NDSS 2022)☆27Feb 14, 2024Updated 2 years ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆140Oct 5, 2022Updated 3 years ago
- ☆45Oct 4, 2024Updated last year
- Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js☆75Jan 21, 2024Updated 2 years ago
- This repository complements our paper by offering the training dataset, the best-performing models utilized in our real-world experiment,…☆22Mar 7, 2025Updated last year
- A set of Code-ql/Joern queries to find vulnerabilities☆67May 22, 2021Updated 5 years ago
- ☆31Nov 29, 2021Updated 4 years ago
- a project repository for a paper☆21May 4, 2024Updated 2 years ago
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆118Feb 13, 2026Updated 5 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A Security Operation Tool Based on Large Language Models 基于大语言模型的安全运营工具☆23Mar 20, 2024Updated 2 years ago
- ☆47May 27, 2023Updated 3 years ago
- ☆15Mar 19, 2022Updated 4 years ago
- get popular npm packages☆48Mar 26, 2025Updated last year
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆99Nov 27, 2023Updated 2 years ago
- A Node.js vulnerability finding tool.☆96May 28, 2026Updated last month
- JavaScript Transformation Techniques Detection☆11Jun 14, 2021Updated 5 years ago
- ☆17Jul 25, 2024Updated 2 years ago
- Artifact accompanying our ICSE '22 paper "Practical Automated Detection of Malicious npm Packages"☆47Jan 25, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- MDG-based static vulnerability scanner specialized in analyzing npm packages and detecting taint-style and prototype pollution vulnerabil…☆26Dec 10, 2025Updated 7 months ago
- Academic papers and articles that I read related to web hacking, fuzzing, etc. / 阅读过的Web安全方向、模糊测试方向的一些论文与阅读笔记☆379Jan 26, 2024Updated 2 years ago
- ☆10Sep 10, 2022Updated 3 years ago
- A browser fuzzer augmented by API mod-ref relations☆35Mar 8, 2024Updated 2 years ago
- A DOM fuzzer.☆84Nov 17, 2021Updated 4 years ago
- Find context neurons in Pythia models.☆13Jun 13, 2023Updated 3 years ago
- Getting started with static program analysis. 静态程序分析入门教程。☆1,763Mar 20, 2024Updated 2 years ago
- A declarative static analysis tool for jvm bytecode based Datalog like CodeQL☆341Jan 6, 2024Updated 2 years ago
- Open-source code analysis platform for C/C++/Java/Binary/Javascript/Python/Kotlin based on code property graphs. Discord https://discord.…☆3,355Updated this week
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Statically Detecting Vulnerable Data Flows in Browser Extensions at Scale☆83Nov 23, 2021Updated 4 years ago
- A Web Platform API proposal for Blob URL☆11Feb 24, 2023Updated 3 years ago
- BotScreen: Trust Everybody, but Cut the Aimbots Yourself (USENIX Security '23)☆14Aug 25, 2023Updated 2 years ago
- ☆165May 24, 2024Updated 2 years ago
- 《深入理解CodeQL》Finding vulnerabilities with CodeQL.☆1,786Nov 21, 2023Updated 2 years ago
- ☆239Jan 14, 2024Updated 2 years ago
- Collections of student projects to find execution path in binary program via taint analysis using Ghidra☆18Sep 25, 2022Updated 3 years ago