a static analysis tool for finding vulnerabilities in C/C++ source code
☆578May 17, 2026Updated 2 months ago
Alternatives and similar repositories for flawfinder
Users that are interested in flawfinder are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- static analysis of C/C++ code☆6,699Updated this week
- A collection of my Semgrep rules to facilitate vulnerability research.☆844Updated this week
- Splint - annotation-assisted static program checker☆333Jul 19, 2026Updated last week
- cwe_checker finds vulnerable patterns in binary executables☆1,348Updated this week
- CodeChecker is an analyzer tooling, defect database and viewer extension for static and dynamic analyzer tools.☆2,592Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆99Nov 10, 2021Updated 4 years ago
- Static code analysis test source code☆37Aug 30, 2023Updated 2 years ago
- ☆17Aug 5, 2020Updated 5 years ago
- ⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The foc…☆14,695Jun 10, 2026Updated last month
- Open-source code analysis platform for C/C++/Java/Binary/Javascript/Python/Kotlin based on code property graphs. Discord https://discord.…☆3,363Updated this week
- Flint++ is cross-platform, zero-dependency port of flint, a lint program for C++ developed and used at Facebook.☆265Sep 25, 2019Updated 6 years ago
- A C/C++ Code Vulnerability Dataset with Code Changes and CVE Summaries☆366Mar 25, 2021Updated 5 years ago
- BinAbsInspector: Vulnerability Scanner for Binaries☆1,669Jun 17, 2024Updated 2 years ago
- A Coverage-Based fuzzing tools☆23Aug 9, 2021Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- EMBA - The firmware security analyzer☆3,572Updated this week
- Firmware Analysis and Comparison Tool☆1,454Updated this week
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆16,035Updated this week
- ☆15Jan 24, 2023Updated 3 years ago
- ThreatBox is a standard and controlled Linux based attack platform. I've used a version of this for years. It started as a collection of …☆77Nov 19, 2024Updated last year
- A collection of my weggli patterns to facilitate vulnerability research.☆158Apr 3, 2026Updated 3 months ago
- Karonte is a static analysis tool to detect multi-binary vulnerabilities in embedded firmware☆428Sep 18, 2021Updated 4 years ago
- Fuzzware's main repository. Start here to install.☆375Jun 27, 2026Updated last month
- A LLVM-based static analysis framework.☆1,051Jul 9, 2026Updated 2 weeks ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A set of Code-ql/Joern queries to find vulnerabilities☆67May 22, 2021Updated 5 years ago
- Fuzzing IoT Devices Using the Router TL-WR902AC as Example☆132Nov 15, 2025Updated 8 months ago
- Static Value-Flow Analysis Framework for Source Code☆1,693Updated this week
- TROMMEL: Sift Through Embedded Device Files to Identify Potential Vulnerable Indicators☆214Jun 23, 2020Updated 6 years ago
- Exploit for uTorrent vulnerability CVE-2020-8437 by mavlevin☆11Feb 1, 2026Updated 5 months ago
- An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.☆593Jun 10, 2026Updated last month
- Binary code-coverage fuzzer for macOS, based on libFuzzer and LLVM☆182May 19, 2025Updated last year
- Evolving fuzzers with large language models☆17Dec 14, 2023Updated 2 years ago
- Code and artifacts related to the Asia CCS 2022 paper☆38Nov 8, 2021Updated 4 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A collection of my Ghidra scripts to facilitate reverse engineering and vulnerability research.☆301Jan 31, 2026Updated 5 months ago
- Companion to the "Introduction to VirtualBox security research" Blog Post☆35Apr 26, 2022Updated 4 years ago
- A Binary Ninja plugin for vulnerability research.☆302Jun 19, 2026Updated last month
- ☆230Jul 25, 2024Updated 2 years ago
- The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power…☆6,675Updated this week
- A fork and successor of the Sulley Fuzzing Framework☆2,349Jul 20, 2026Updated last week
- ☆10Sep 24, 2019Updated 6 years ago