cispa / http-conformanceLinks
Code for our 2024 ACM AsiaCCS Paper "Who's Breaking the Rules? Studying Conformance to the HTTP Specifications and its Security Impact"
☆14Updated 10 months ago
Alternatives and similar repositories for http-conformance
Users that are interested in http-conformance are comparing it to the libraries listed below
Sorting:
- ☆25Updated 3 years ago
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆12Updated 10 months ago
- FuzzCache: Optimizing Web Application Fuzzing Through Software-Based Data Cache (ACM CCS 2024)☆16Updated 9 months ago
- QUICforge is an experimental python tool for request forgery attacks with QUIC☆23Updated 3 years ago
- ☆39Updated 2 years ago
- [NDSS 2024] ReqsMiner is an innovative fuzzing framework developed to discover previously unexamined inconsistencies in CDN forwarding re…☆21Updated last year
- ☆14Updated last month
- YuraScanner☆47Updated 6 months ago
- A neurosymbolic framework for vulnerability detection in code☆207Updated this week
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆71Updated last year
- ☆28Updated 2 years ago
- ☆29Updated 3 months ago
- 一个搜索网络安全领域顶会论文的小工具☆88Updated 2 weeks ago
- ☆14Updated last month
- 本项目通过大模型联动爬虫,检索Github上所有存有有价值漏洞信息与漏洞POC或规则信息的项目,并自动识别项目的目录结构、Readme信息后进行总结分析并分类,所汇总的项目可以帮助安全行业从业者收集漏洞信息、POC信息、规则等。☆139Updated last year
- Collection of community-driven CodeQL query, library and extension packs☆176Updated this week
- Awesome Large Language Models for Vulnerability Detection☆222Updated this week
- ☆28Updated 3 years ago
- The repository has collected about 10,000 malicious pypi packages. This dataset is the work of the ASE 2023 paper "An Empirical Study of…☆98Updated last week
- ☆50Updated 2 years ago
- ☆26Updated last year
- ReDoSHunter: A Combined Static and Dynamic Approach for Regular Expression DoS Detection☆79Updated 2 years ago
- Corax for Java: A general static analysis framework for java code checking.☆253Updated 8 months ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆155Updated last year
- ☆14Updated 2 years ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆46Updated 3 years ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆13Updated 3 weeks ago
- A semantic-based tool to detect credential leakage in mini-apps.☆13Updated 11 months ago
- Witcher is the first framework for using AFL to fuzz web applications.☆92Updated last year
- Testability Pattern Catalogs for SAST☆31Updated 5 months ago