ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.
☆170Jan 29, 2024Updated 2 years ago
Alternatives and similar repositories for ODGen
Users that are interested in ODGen are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆25Nov 30, 2021Updated 4 years ago
- ☆31May 1, 2025Updated last year
- Modular static malicious JavaScript detection system☆76Jan 18, 2021Updated 5 years ago
- ☆28Jul 21, 2022Updated 4 years ago
- Artifacts of the paper "Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Content" in USENIX…☆19Aug 9, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Testability Tarpits: the Impact of Code Patterns on the Security Testing of Web Applications (NDSS 2022)☆27Feb 14, 2024Updated 2 years ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆141Oct 5, 2022Updated 3 years ago
- ☆46Aug 20, 2026Updated 2 weeks ago
- Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js☆77Jan 21, 2024Updated 2 years ago
- This repository complements our paper by offering the training dataset, the best-performing models utilized in our real-world experiment,…☆22Mar 7, 2025Updated last year
- A set of Code-ql/Joern queries to find vulnerabilities☆67May 22, 2021Updated 5 years ago
- ☆31Nov 29, 2021Updated 4 years ago
- a project repository for a paper☆22May 4, 2024Updated 2 years ago
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆119Feb 13, 2026Updated 6 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A Security Operation Tool Based on Large Language Models 基于大语言模型的安全运营工具☆23Mar 20, 2024Updated 2 years ago
- Precise and high-order static points-to/taint analysis based on LLVM IR.☆93Sep 18, 2025Updated 11 months ago
- ☆47May 27, 2023Updated 3 years ago
- ☆15Mar 19, 2022Updated 4 years ago
- get popular npm packages☆49Mar 26, 2025Updated last year
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆99Nov 27, 2023Updated 2 years ago
- A Node.js vulnerability finding tool.☆96May 28, 2026Updated 3 months ago
- JavaScript Transformation Techniques Detection☆11Jun 14, 2021Updated 5 years ago
- ☆17Jul 25, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Artifact accompanying our ICSE '22 paper "Practical Automated Detection of Malicious npm Packages"☆47Jan 25, 2022Updated 4 years ago
- MDG-based static vulnerability scanner specialized in analyzing npm packages and detecting taint-style and prototype pollution vulnerabil…☆27Dec 10, 2025Updated 8 months ago
- Academic papers and articles that I read related to web hacking, fuzzing, etc. / 阅读过的Web安全方向、模糊测试方向的一些论文与阅读笔记☆379Jan 26, 2024Updated 2 years ago
- ☆10Sep 10, 2022Updated 3 years ago
- A browser fuzzer augmented by API mod-ref relations☆35Mar 8, 2024Updated 2 years ago
- A DOM fuzzer.☆84Nov 17, 2021Updated 4 years ago
- Find context neurons in Pythia models.☆13Jun 13, 2023Updated 3 years ago
- Getting started with static program analysis. 静态程序分析入门教程。☆1,768Mar 20, 2024Updated 2 years ago
- A declarative static analysis tool for jvm bytecode based Datalog like CodeQL☆341Jan 6, 2024Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Open-source code analysis platform for C/C++/Java/Binary/Javascript/Python/Kotlin based on code property graphs. Discord https://discord.…☆3,470Updated this week
- Statically Detecting Vulnerable Data Flows in Browser Extensions at Scale☆83Nov 23, 2021Updated 4 years ago
- A Web Platform API proposal for Blob URL☆12Feb 24, 2023Updated 3 years ago
- BotScreen: Trust Everybody, but Cut the Aimbots Yourself (USENIX Security '23)☆15Aug 25, 2023Updated 3 years ago
- ☆164May 24, 2024Updated 2 years ago
- 《深入理解CodeQL》Finding vulnerabilities with CodeQL.☆1,791Nov 21, 2023Updated 2 years ago
- ☆239Jan 14, 2024Updated 2 years ago