chris-anley / cq
CQ, a code security scanner
β100Updated 11 months ago
Alternatives and similar repositories for cq:
Users that are interested in cq are comparing it to the libraries listed below
- β114Updated last year
- Command line fuzzer and bruteforcer πͺ wfuzz for commandβ85Updated 2 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raiderβ139Updated 3 years ago
- Manager of third-party sources of Semgrep rules πβ81Updated 9 months ago
- Create notes during a security code review in VSCode π Import your favorite SAST tool findings π οΈ and collaborate with others π€β133Updated last month
- Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, anβ¦β142Updated last year
- Trail of Bits Testing Handbookβ72Updated last month
- Provides an overview of the inner file structure of a PDFβ25Updated 2 years ago
- β64Updated last week
- β32Updated 2 years ago
- Mindmaps allow to organize and understand information faster and better.β2Updated 3 years ago
- A GraphQL enumeration and extraction toolβ131Updated 2 years ago
- A rust utility for instrumenting binaries, used in Holiday Hack Challenge 2021β27Updated 3 years ago
- a deterministic finite automata rankerβ70Updated 3 years ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagramsβ104Updated 3 months ago
- A collection of my Semgrep rulesβ49Updated last year
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).β123Updated 2 years ago
- An extension to use Semgrep inside Burp Suite.β88Updated last year
- Encode and Fuzz Custom Protobuf Messages in Burp Suiteβ30Updated 2 months ago
- Dependency Confusion Security Testing Toolβ47Updated 2 years ago
- Find CVE PoCs on GitHubβ147Updated last year
- Burp with Friendsβ103Updated 2 years ago
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messagesβ36Updated last year
- β110Updated last year
- a multithreaded fast tool to preform active subdomain enumerationβ34Updated 2 years ago
- β85Updated 10 months ago
- Custom scripts for the PIPER Burp extensions.β98Updated last year
- This repo contains write ups of vulnerabilities I've found and exploits I've publicly developed.β145Updated 2 years ago
- A curated list of argument injection vectorsβ40Updated 3 months ago
- truffleproc β hunt secrets in process memory (TruffleHog & gdb mashup)β117Updated last year