cispa / http-conformanceLinks
Code for our 2024 ACM AsiaCCS Paper "Who's Breaking the Rules? Studying Conformance to the HTTP Specifications and its Security Impact"
☆16Updated last year
Alternatives and similar repositories for http-conformance
Users that are interested in http-conformance are comparing it to the libraries listed below
Sorting:
- ☆25Updated 3 years ago
- ☆17Updated last year
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆12Updated last year
- ☆43Updated 2 years ago
- QUICforge is an experimental python tool for request forgery attacks with QUIC☆23Updated 3 years ago
- [NDSS 2024] ReqsMiner is an innovative fuzzing framework developed to discover previously unexamined inconsistencies in CDN forwarding re…☆23Updated last year
- YuraScanner☆60Updated 8 months ago
- A neurosymbolic framework for vulnerability detection in code☆255Updated last week
- ☆14Updated 2 years ago
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆72Updated last year
- ☆24Updated 2 months ago
- A differential fuzzing framework for the QUIC protocol☆19Updated last year
- Collection of community-driven CodeQL query, library and extension packs☆192Updated last week
- ☆27Updated last year
- YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, d…☆153Updated last week
- ☆28Updated 3 years ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆47Updated 3 years ago
- ☆29Updated 6 months ago
- A benchmark for Java gadget chain detecting algorithms.☆13Updated 4 months ago
- ☆29Updated 3 years ago
- Awesome Large Language Models for Vulnerability Detection☆291Updated last week
- ReDoSHunter: A Combined Static and Dynamic Approach for Regular Expression DoS Detection☆80Updated 2 years ago
- A benchmark to evaluate taint analysis☆28Updated 3 years ago
- Corax for Java: A general static analysis framework for java code checking.☆253Updated 11 months ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆157Updated last year
- SecCodeBench is a benchmark suite focusing on evaluating the security of code generated by large language models (LLMs).☆75Updated 3 weeks ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆14Updated 3 months ago
- 一个搜索网络安全领域顶会论文的小工具☆92Updated 3 months ago
- Security Observability Framework for ML/AI Model File Loading☆40Updated 2 months ago
- Testability Tarpits: the Impact of Code Patterns on the Security Testing of Web Applications (NDSS 2022)☆25Updated last year