Vancir / Awesome-Software-Supply-Chain-Security
Awesome materials for software supply chain security
☆18Updated 4 years ago
Alternatives and similar repositories for Awesome-Software-Supply-Chain-Security:
Users that are interested in Awesome-Software-Supply-Chain-Security are comparing it to the libraries listed below
- Works about detecting vulnerable using ML.☆83Updated 5 years ago
- Source Code Vulnerability Detection Tools(SCVDT)provides a vulnerable code database, vulnerability detection service for Java and C/C++ p…☆116Updated 3 years ago
- A set of Code-ql/Joern queries to find vulnerabilities☆58Updated 3 years ago
- Collate and collect binary related materials, including papers, tools, etc. Now,there are the following categories: 1、Fuzzing☆58Updated 6 years ago
- Pairing Security Advisories with Vulnerable Functions Using Open-Source LLMs - DIMVA '24☆16Updated 8 months ago
- 记录自己在看 afl 源码时候的一些笔记和想法,还有一些自己觉得有意思的魔改。2020年12月2日update:添加混合模糊测试目录☆110Updated 4 years ago
- A GPT-Based Fuzz Driver Generator☆46Updated last year
- CKGFuzzer: LLM-Based Fuzz Driver Generation Enhanced By Code Knowledge Graph☆72Updated 3 months ago
- B2SFinder is a binary-to-source matching tool for OSS reuse detection on COTS software. This project contains the core code of B2SFinder …☆54Updated 5 years ago
- Auto-generated CodeQL rules for matching CVE vulnerabilities and variants.☆169Updated 7 months ago
- Code for UI, backend, engine and statistical analysis for RE☆22Updated 3 years ago
- ☆26Updated last year
- ☆34Updated 3 years ago
- This is the project for the paper “Large-scale Security Measurements on the Android Firmware Ecosystem” in ICSE2022☆37Updated 5 months ago
- FirmSec Dataset☆10Updated 3 years ago
- Detecting Flow of Sensitive Data in Mini-Programs with Static Taint Analysis☆74Updated last year
- DiAne is a smart fuzzer for IoT devices☆39Updated last year
- HiddenCPG: Large-Scale Vulnerable Clone Detection Using Subgraph Isomorphism of Code Property Graphs☆43Updated 2 years ago
- ☆34Updated 2 years ago
- Run fuzzing experiments in Docker☆31Updated 4 years ago
- a blackbox network fuzzer for IoT devices☆53Updated 8 months ago
- ☆86Updated 10 months ago
- KernJC: Automated Vulnerable Environment Generation for Linux Kernel Vulnerabilities (Best Practical Paper Award of RAID 2024)☆59Updated 3 months ago
- ISSTA'23 - Third-party Library Dependency for Large-scale SCA in the C/C++ Ecosystem: How Far Are We?☆29Updated last year
- Prototype of the paper "APICraft: Fuzz Driver Generation for Closed-source SDK Libraries".☆65Updated 3 years ago
- ☆75Updated 3 years ago
- MINER provided by the paper "MINER: A Hybrid Data-Driven Approach for REST API Fuzzing"☆39Updated 2 years ago
- Automatic Exploit Generation Paper☆86Updated 3 years ago
- implementing collafl☆25Updated 5 years ago
- A Coverage-Based fuzzing tools☆23Updated 3 years ago