Vancir / Awesome-Software-Supply-Chain-SecurityLinks
Awesome materials for software supply chain security
☆18Updated 5 years ago
Alternatives and similar repositories for Awesome-Software-Supply-Chain-Security
Users that are interested in Awesome-Software-Supply-Chain-Security are comparing it to the libraries listed below
Sorting:
- Works about detecting vulnerable using ML.☆87Updated 5 years ago
- A set of Code-ql/Joern queries to find vulnerabilities☆64Updated 4 years ago
- Source Code Vulnerability Detection Tools(SCVDT)provides a vulnerable code database, vulnerability detection service for Java and C/C++ p…☆117Updated 4 years ago
- Collate and collect binary related materials, including papers, tools, etc. Now,there are the following categories: 1、Fuzzing☆57Updated 6 years ago
- Code for UI, backend, engine and statistical analysis for RE☆22Updated 4 years ago
- Auto-generated CodeQL rules for matching CVE vulnerabilities and variants.☆181Updated last year
- ☆95Updated last year
- ☆81Updated 4 years ago
- ☆34Updated 3 years ago
- Binary Code Similarity Analysis (BCSA) Tool☆124Updated 4 months ago
- This is the project for the paper “Large-scale Security Measurements on the Android Firmware Ecosystem” in ICSE2022☆37Updated 10 months ago
- AFLNW: network wrapper for AFL☆46Updated last year
- Summary of static analysis in Java and C/C++☆18Updated 3 years ago
- VulSeeker: A Semantic Learning Based Vulnerability Seeker For Cross-Platform Binary☆106Updated 6 years ago
- Automatic Exploit Generation Paper☆90Updated 3 years ago
- B2SFinder is a binary-to-source matching tool for OSS reuse detection on COTS software. This project contains the core code of B2SFinder …☆57Updated 6 years ago
- KernJC: Automated Vulnerable Environment Generation for Linux Kernel Vulnerabilities | 🏆 Best Practical Paper Award of RAID 2024☆74Updated 2 months ago
- A GPT-Based Fuzz Driver Generator☆48Updated last year
- ☆16Updated 4 years ago
- source code analysis workshop☆17Updated 4 years ago
- ☆93Updated last year
- Goshawk is a static analyze tool to detect memory corruption bugs in C source codes. It utilizes NLP to infer custom memory management fu…☆99Updated last year
- aurora-d☆20Updated 3 years ago
- Pairing Security Advisories with Vulnerable Functions Using Open-Source LLMs - DIMVA '24☆16Updated last year
- Detecting Flow of Sensitive Data in Mini-Programs with Static Taint Analysis☆78Updated last year
- CKGFuzzer: LLM-Based Fuzz Driver Generation Enhanced By Code Knowledge Graph☆111Updated 8 months ago
- Code and artifacts related to the Asia CCS 2022 paper☆38Updated 3 years ago
- 模糊测试种子库 comprehensive croups for fuzzing seeds with carfefully selected(rate=coverage/filesize)☆23Updated 4 years ago
- A docker environment which could run and debug multiarch program, such as mips, arm☆18Updated 4 years ago
- A Coverage-Based fuzzing tools☆23Updated 4 years ago