cuhk-seclab / XSym
☆15Updated 3 years ago
Alternatives and similar repositories for XSym:
Users that are interested in XSym are comparing it to the libraries listed below
- ☆10Updated last year
- ☆38Updated 2 years ago
- ☆48Updated 2 years ago
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆23Updated 3 years ago
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆11Updated 7 months ago
- Parser utility to generate ASTs from PHP source code suitable to be processed by Joern.☆35Updated 5 years ago
- ☆26Updated last year
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆95Updated last year
- Testability Tarpits: the Impact of Code Patterns on the Security Testing of Web Applications (NDSS 2022)☆25Updated last year
- ☆13Updated 3 years ago
- A GPT-Based Fuzz Driver Generator☆46Updated last year
- HiddenCPG: Large-Scale Vulnerable Clone Detection Using Subgraph Isomorphism of Code Property Graphs☆43Updated 2 years ago
- 模糊测试种子库 comprehensive croups for fuzzing seeds with carfefully selected(rate=coverage/filesize)☆23Updated 4 years ago
- A set of Code-ql/Joern queries to find vulnerabilities☆58Updated 3 years ago
- MINER provided by the paper "MINER: A Hybrid Data-Driven Approach for REST API Fuzzing"☆39Updated 2 years ago
- EcoFuzz-An adaptive energy-saving greybox fuzzer☆50Updated 5 years ago
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆67Updated 8 months ago
- A hybrid analysis framework to aid in uncovering deserialization vulnerabilities☆13Updated 6 months ago
- ☆14Updated 5 years ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆13Updated 4 months ago
- Witcher is the first framework for using AFL to fuzz web applications.☆87Updated last year
- Link: Black-Box Detection of Cross-Site Scripting Vulnerabilities Using Reinforcement Learning☆22Updated 3 years ago
- Run fuzzing experiments in Docker☆101Updated 4 years ago
- The released code of FuzzGuard in USENIX Security 2020.☆29Updated 5 years ago
- 记录自己在看 afl 源码时候的一些笔记和想法,还有一些自己觉得有意思的魔改。2020年12月2日update:添加混合模糊测试目录☆110Updated 4 years ago
- ☆21Updated 2 years ago
- A browser fuzzer augmented by API mod-ref relations☆31Updated last year
- Taint Analysis for PHP☆45Updated 9 years ago
- An automated static taint analysis tool for the Lua web framework.☆17Updated 7 months ago
- Automatic Exploit Generation Paper☆86Updated 3 years ago