adamdoupe / enemy-of-the-stateLinks
This novel black-box web vulnerability scanner attempts to infer the state machine of the web application.
☆19Updated 5 years ago
Alternatives and similar repositories for enemy-of-the-state
Users that are interested in enemy-of-the-state are comparing it to the libraries listed below
Sorting:
- Joern Workshops☆28Updated 8 months ago
- Parser utility to generate ASTs from PHP source code suitable to be processed by Joern.☆15Updated 6 years ago
- CFG and scripts for fuzzing the PHP interpreter with Domato☆28Updated 5 years ago
- Dockerfile for AFL++ and helpful other tools☆21Updated 5 years ago
- Symbolic execution inspired PHP application scanner for code-path discovery☆34Updated 6 years ago
- Static data flow-based analysis of JavaScript files to detect syntactic clones☆23Updated 5 years ago
- This is the project of LearnAFL.☆28Updated 5 years ago
- ☆19Updated 9 years ago
- Extract useful semantic from CVE descriptions usinig NLP☆25Updated 2 years ago
- Materials from Fuzzing Bay Area meetups☆57Updated 5 years ago
- ☆23Updated 6 years ago
- Result files from various fuzzing runs☆16Updated 3 years ago
- COVA - A static analysis tool to compute path conditions☆37Updated 3 months ago
- ACSAC 2018 paper: Towards Automated Generation of Exploitation Primitives for Web Browsers☆14Updated 6 years ago
- ☆47Updated 5 years ago
- FuzzSplore: Visualizing Feedback-Driven Fuzzing Techniques☆35Updated 4 years ago
- Angr-based static analysis tool for vusec/vuzzer64 fuzzing tool☆22Updated 5 years ago
- Downloader for Firefox/jsshell builds for fuzzing.☆43Updated this week
- ☆12Updated 5 years ago
- DOM fuzzers - not maintained anymore☆17Updated 6 years ago
- ☆12Updated 3 years ago
- ☆19Updated 6 years ago
- Testability Tarpits: the Impact of Code Patterns on the Security Testing of Web Applications (NDSS 2022)☆25Updated last year
- Materials from Fuzzing Bay Area meetups☆68Updated 5 years ago
- SanitizerCoverage hooks and coverage reports for user-mode QEMU☆12Updated 5 years ago
- A Simple command line tool that helps checking web applications to identify insecure deserialization vulnerabilities.☆24Updated 6 years ago
- This is the repository for JÄk. I created it as prototype during my masterthesis.☆30Updated 7 years ago
- This is an example library to show how to fuzz with AFL++ only the code modified by the last commit.☆17Updated 5 years ago
- Conference Papers and Appendicies (USENIX Security, BlackHat, HITBSecConf, and BeVX)☆26Updated 2 years ago
- Exploit code for CVE-2019-11707 on Firefox 66.0.3 running on Ubuntu☆42Updated 6 years ago