analysis-tools-dev / static-analysisLinks
⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The focus is on tools which improve code quality.
☆14,159Updated last week
Alternatives and similar repositories for static-analysis
Users that are interested in static-analysis are comparing it to the libraries listed below
Sorting:
- Find secrets with Gitleaks 🔑☆23,711Updated this week
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆13,173Updated this week
- OSS-Fuzz - continuous fuzzing for open source software.☆11,412Updated last week
- Browser-based frontend to gdb (gnu debugger). Add breakpoints, view the stack, visualize data structures, and more in C, C++, Go, Rust, a…☆10,181Updated 4 months ago
- A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on…☆5,646Updated last year
- UNIX-like reverse engineering framework and command-line toolset☆22,497Updated this week
- The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis☆32,880Updated 2 months ago
- Command-line JSON processor☆32,845Updated 2 weeks ago
- An enterprise friendly way of detecting and preventing secrets in code.☆4,279Updated 7 months ago
- File formats dissections and more...☆10,995Updated last year
- A community-driven list of awesome linters.☆1,026Updated last year
- A hacky debugger UI for hackers☆6,302Updated 9 months ago
- The list of continuous integration services and tools☆3,948Updated 2 months ago
- 🐶 A curated list of Web Security materials and resources.☆12,597Updated 5 months ago
- The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in productio…☆9,510Updated last year
- Parsing gigabytes of JSON per second : used by Facebook/Meta Velox, the Node.js runtime, ClickHouse, WatermelonDB, Apache Doris, Milvus, …☆22,618Updated this week
- Prevents you from committing secrets and credentials into git repositories☆13,007Updated last month
- Vulnerability Static Analysis for Containers☆10,836Updated last week
- An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.☆40,985Updated 2 weeks ago
- A collection of awesome software, libraries, documents, books, resources and cools stuffs about security.☆13,581Updated last year
- A curated list of awesome command-line frameworks, toolkits, guides and gizmos. Inspired by awesome-php.☆35,661Updated 2 months ago
- Curated list of awesome resources on Compilers, Interpreters and Runtimes☆9,496Updated last year
- A curated list of Rust code and resources.☆53,336Updated this week
- An "Awesome" list of code review resources - articles, papers, tools, etc☆4,723Updated last year
- Checklist of the most important security countermeasures when designing, testing, and releasing your API☆23,069Updated 5 months ago
- GIT utilities -- repo summary, repl, changelog population, author commit percentages and more☆17,824Updated last week
- Reconnaissance tool for GitHub organizations☆6,078Updated 3 years ago
- Vulnerability scanner written in Go which uses the data provided by https://osv.dev☆7,932Updated last week
- jq for binary formats - tool, language and decoders for working with binary and text formats☆10,276Updated last week
- A collection of awesome penetration testing resources, tools and other shiny things☆24,197Updated 3 months ago