cispa / http-conformanceLinks
Code for our 2024 ACM AsiaCCS Paper "Who's Breaking the Rules? Studying Conformance to the HTTP Specifications and its Security Impact"
☆16Updated last month
Alternatives and similar repositories for http-conformance
Users that are interested in http-conformance are comparing it to the libraries listed below
Sorting:
- ☆27Updated 3 years ago
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆13Updated last year
- ☆18Updated last year
- ☆42Updated 3 years ago
- YuraScanner☆72Updated 11 months ago
- A containerized Model Context Protocol (MCP) server providing static code analysis using Joern's Code Property Graph (CPG) with support f…☆41Updated this week
- YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, d…☆246Updated this week
- [NDSS 2024] ReqsMiner is an innovative fuzzing framework developed to discover previously unexamined inconsistencies in CDN forwarding re…☆25Updated last year
- Collection of community-driven CodeQL query, library and extension packs☆203Updated last month
- A benchmark for Java gadget chain detecting algorithms.☆15Updated 7 months ago
- ☆27Updated last year
- A neurosymbolic framework for vulnerability detection in code☆320Updated 2 months ago
- ☆30Updated 3 years ago
- QUICforge is an experimental python tool for request forgery attacks with QUIC☆23Updated 3 years ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆47Updated 3 years ago
- ☆31Updated 9 months ago
- ReDoSHunter: A Combined Static and Dynamic Approach for Regular Expression DoS Detection☆81Updated 3 years ago
- ☆61Updated 2 years ago
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆75Updated last year
- SecCodeBench is a benchmark suite focusing on evaluating the security of code generated by large language models (LLMs).☆86Updated this week
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆117Updated 4 months ago
- CodeQL zero to hero blog post series challenges☆163Updated 4 months ago
- ☆10Updated last year
- Awesome Large Language Models for Vulnerability Detection☆368Updated this week
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆164Updated 2 years ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆14Updated 6 months ago
- Corax for Java: A general static analysis framework for java code checking.☆254Updated last year
- A benchmark to evaluate taint analysis☆28Updated 3 years ago
- A simple Joern MCP Server.☆34Updated 2 months ago
- ☆14Updated 2 years ago