david-a-wheeler / flawfinderLinks
a static analysis tool for finding vulnerabilities in C/C++ source code
☆533Updated 11 months ago
Alternatives and similar repositories for flawfinder
Users that are interested in flawfinder are comparing it to the libraries listed below
Sorting:
- ☆865Updated this week
- ClusterFuzzLite - Simple continuous fuzzing that runs in CI.☆492Updated 7 months ago
- Fuzz Introspector -- introspect, extend and optimise fuzzers☆420Updated last week
- ⚙️ A curated list of dynamic analysis tools and linters for all programming languages, binaries, and more.☆1,014Updated 2 months ago
- A collection of my Semgrep rules to facilitate vulnerability research.☆654Updated last month
- Binary Analysis Next Generation (BANG)☆504Updated last week
- cwe_checker finds vulnerable patterns in binary executables☆1,231Updated 3 months ago
- Automatically exported from code.google.com/p/rough-auditing-tool-for-security☆87Updated 4 years ago
- FuzzBench - Fuzzer benchmarking as a service.☆1,151Updated 5 months ago
- the Network Protocol Fuzzer that we will want to use.☆768Updated last year
- A set of vulnerable C code snippets (with mapped CVEs)☆78Updated last year
- Splint - annotation-assisted static program checker☆322Updated 7 months ago
- An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.☆698Updated 8 months ago
- FormatFuzzer is a framework for high-efficiency, high-quality generation and parsing of binary inputs.☆422Updated last month
- Checksec tool in Python, Rich output. Based on LIEF☆337Updated 3 weeks ago
- Set of tests for fuzzing engines☆1,448Updated 3 years ago
- AFLNet: A Greybox Fuzzer for Network Protocols (https://thuanpv.github.io/publications/AFLNet_ICST20.pdf)☆940Updated last month
- The 'exploitable' GDB plugin☆734Updated 2 years ago
- A vulnerable C program for testing fuzzers.☆198Updated 2 years ago
- Security-related flags and options for C compilers☆193Updated 2 years ago
- Semgrep Community Edition rules, maintained by Semgrep and the community. Free to use under the Semgrep Rules License.☆938Updated this week
- Creates CycloneDX Software Bill of Materials (SBOM) documents for C/C++ projects using Conan☆26Updated last year
- ☆252Updated 2 years ago
- A unit test-like interface for fuzzing and symbolic execution☆837Updated 5 months ago
- A TCP/UDP based network daemon fuzzer☆520Updated last year
- Tracking CVEs for the linux Kernel☆748Updated last year
- A set of Python command line tools for working with SARIF files produced by code analysis tools☆114Updated last month
- Library for structured fuzzing with protobuffers☆620Updated 3 months ago
- A curated list of different AFL forks and AFL inspired fuzzers with detailed equivalent academic papers and AFL-fuzzing tutorials☆547Updated last year
- An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.☆572Updated 3 months ago