WSP-LAB / Link
Link: Black-Box Detection of Cross-Site Scripting Vulnerabilities Using Reinforcement Learning
☆22Updated 3 years ago
Alternatives and similar repositories for Link:
Users that are interested in Link are comparing it to the libraries listed below
- ☆38Updated 2 years ago
- ☆15Updated 3 years ago
- ☆48Updated 2 years ago
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆95Updated last year
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆67Updated 8 months ago
- ☆26Updated last year
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆23Updated 3 years ago
- FuzzCache: Optimizing Web Application Fuzzing Through Software-Based Data Cache (ACM CCS 2024)☆10Updated 6 months ago
- Witcher is the first framework for using AFL to fuzz web applications.☆87Updated last year
- HiddenCPG: Large-Scale Vulnerable Clone Detection Using Subgraph Isomorphism of Code Property Graphs☆43Updated 2 years ago
- ☆17Updated last year
- ☆16Updated 9 months ago
- A set of Code-ql/Joern queries to find vulnerabilities☆58Updated 3 years ago
- This repo list the core literature in the field of fuzzing test, large language model, and LLM-based fuzzer. Most of papers are selected …☆52Updated last year
- A browser fuzzer augmented by API mod-ref relations☆31Updated last year
- Montage: A Neural Network Language Model-Guided JavaScript Engine Fuzzer☆88Updated last year
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆11Updated 7 months ago
- ☆21Updated 2 years ago
- ☆25Updated 2 years ago
- Auto-generated CodeQL rules for matching CVE vulnerabilities and variants.☆169Updated 7 months ago
- A GPT-Based Fuzz Driver Generator☆46Updated last year
- ☆10Updated last year
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆154Updated last year
- A hybrid analysis framework to aid in uncovering deserialization vulnerabilities☆13Updated 6 months ago
- Detecting Flow of Sensitive Data in Mini-Programs with Static Taint Analysis☆74Updated last year
- ☆104Updated last year
- EMS provided by the paper "EMS: History-Driven Mutation for Coverage-based Fuzzing"☆34Updated 2 years ago
- 模糊测试种子库 comprehensive croups for fuzzing seeds with carfefully selected(rate=coverage/filesize)☆23Updated 4 years ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆13Updated 4 months ago
- Testability Pattern Catalogs for SAST☆30Updated 2 months ago