advanced-security / awesome-codeqlLinks
A curated list of awesome CodeQL resources.
☆44Updated 3 weeks ago
Alternatives and similar repositories for awesome-codeql
Users that are interested in awesome-codeql are comparing it to the libraries listed below
Sorting:
- Collection of community-driven CodeQL query, library and extension packs☆171Updated 3 weeks ago
- GH CLI CodeQL Scan Extension☆20Updated 9 months ago
- [Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instea…☆83Updated last year
- Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations☆26Updated last year
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆59Updated 3 months ago
- CodeQL Security Queries☆27Updated last week
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆119Updated last year
- CodeQL zero to hero blog post series challenges☆129Updated 3 weeks ago
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 3 years ago
- CodeQL queries developed by Trail of Bits☆104Updated last month
- CLI to build a custom CodeQL bundle☆10Updated 3 months ago
- CodeQL database manager☆48Updated 3 months ago
- Integrate CodeQL into CI/CD pipelines, using the CodeQL CLI Bundle for Automated Code Scanning☆21Updated 2 months ago
- CodeQL workshops for GitHub Universe☆96Updated 2 years ago
- My CodeQL queries collection☆98Updated last year
- Personal CodeQL queries☆64Updated 2 weeks ago
- GitHub Advanced Security Python Toolkit☆13Updated 2 weeks ago
- ☆72Updated last month
- OSS-Fuzz vulnerabilities for OSV.☆156Updated this week
- Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js☆68Updated last year
- A CodeQL workshop covering CVE-2021-21380☆12Updated 7 months ago
- Python bindings for CodeQL CLI☆54Updated 4 years ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆46Updated 2 years ago
- Testability Pattern Catalogs for SAST☆31Updated 4 months ago
- Grab some/all of CodeQL CLI binary, QL library, VSCode starter workspace, VSCode and VSCode QL extension☆10Updated last month
- Public disclosure channel for security vulnerabilities☆18Updated 3 weeks ago
- ☆71Updated 3 years ago
- A neurosymbolic framework for vulnerability detection in code☆166Updated this week
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆148Updated last year
- 《深入理解Semgrep》Finding vulnerabilities with Semgrep.☆52Updated last year