cispa / http-conformanceLinks
Code for our 2024 ACM AsiaCCS Paper "Who's Breaking the Rules? Studying Conformance to the HTTP Specifications and its Security Impact"
☆16Updated last month
Alternatives and similar repositories for http-conformance
Users that are interested in http-conformance are comparing it to the libraries listed below
Sorting:
- [NDSS 2024] ReqsMiner is an innovative fuzzing framework developed to discover previously unexamined inconsistencies in CDN forwarding re…☆25Updated last year
- ☆18Updated last year
- ☆27Updated 3 years ago
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆13Updated last year
- QUICforge is an experimental python tool for request forgery attacks with QUIC☆23Updated 3 years ago
- ☆41Updated 3 years ago
- A containerized Model Context Protocol (MCP) server providing static code analysis using Joern's Code Property Graph (CPG) with support f…☆40Updated last month
- ☆31Updated 9 months ago
- A differential fuzzing framework for the QUIC protocol☆19Updated 2 years ago
- YuraScanner☆72Updated 11 months ago
- Collection of community-driven CodeQL query, library and extension packs☆201Updated last month
- A benchmark for Java gadget chain detecting algorithms.☆15Updated 7 months ago
- YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, d…☆240Updated 2 weeks ago
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆75Updated last year
- ☆27Updated last year
- A neurosymbolic framework for vulnerability detection in code☆320Updated last month
- Grammar-based HTTP/2 fuzzer with mutation ability☆47Updated 3 years ago
- ☆30Updated 3 years ago
- Corax for Java: A general static analysis framework for java code checking.☆254Updated last year
- ReDoSHunter: A Combined Static and Dynamic Approach for Regular Expression DoS Detection☆81Updated 3 years ago
- ☆28Updated 3 years ago
- 一个搜索网络安全领域顶会论文的小工具☆95Updated 6 months ago
- ☆10Updated last year
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆118Updated 4 months ago
- ☆60Updated 2 years ago
- Awesome Large Language Models for Vulnerability Detection☆362Updated this week
- Attacks against QUIC (CVE-2022-30591)☆25Updated 3 years ago
- YASA-UAST is an intermediate representation structure for multi-language program analysis. The UAST-Parser parses code from different pro…☆65Updated 2 weeks ago
- ☆14Updated 2 years ago
- ☆202Updated 3 months ago