david-a-wheeler / flawfinder
a static analysis tool for finding vulnerabilities in C/C++ source code
☆519Updated 8 months ago
Alternatives and similar repositories for flawfinder:
Users that are interested in flawfinder are comparing it to the libraries listed below
- ☆803Updated this week
- cwe_checker finds vulnerable patterns in binary executables☆1,199Updated 3 months ago
- A collection of my Semgrep rules to facilitate vulnerability research.☆616Updated 8 months ago
- AFLNet: A Greybox Fuzzer for Network Protocols (https://thuanpv.github.io/publications/AFLNet_ICST20.pdf)☆911Updated 8 months ago
- Fuzz Introspector -- introspect, extend and optimise fuzzers☆406Updated last week
- Binary Analysis Next Generation (BANG)☆495Updated 3 months ago
- ClusterFuzzLite - Simple continuous fuzzing that runs in CI.☆477Updated 3 months ago
- Set of tests for fuzzing engines☆1,440Updated 3 years ago
- ⚙️ A curated list of dynamic analysis tools and linters for all programming languages, binaries, and more.☆984Updated 3 weeks ago
- FuzzBench - Fuzzer benchmarking as a service.☆1,138Updated last month
- A LLVM-based static analysis framework.☆975Updated this week
- Open-source code analysis platform for C/C++/Java/Binary/Javascript/Python/Kotlin based on code property graphs. Discord https://discord.…☆2,313Updated this week
- ☆253Updated last year
- FormatFuzzer is a framework for high-efficiency, high-quality generation and parsing of binary inputs.☆414Updated 2 years ago
- Library for structured fuzzing with protobuffers☆612Updated last month
- A powerful static binary rewriting tool☆1,015Updated 2 months ago
- An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.☆688Updated 5 months ago
- The 'exploitable' GDB plugin☆728Updated 2 years ago
- Fuzz anything with Program Environment Fuzzing☆378Updated 2 months ago
- Automatically exported from code.google.com/p/rough-auditing-tool-for-security☆84Updated 3 years ago
- MATE is a suite of tools for interactive program analysis with a focus on hunting for bugs in C and C++ code using Code Property Graphs.☆191Updated 2 years ago
- the Network Protocol Fuzzer that we will want to use.☆749Updated last year
- Project page for "The Fuzzing Book"☆1,154Updated 2 months ago
- Fuzzing Embedded Systems using Hardware Breakpoints☆182Updated last year
- An interactive (fast) static source code analyzer☆157Updated last week
- OSS-Fuzz vulnerabilities for OSV.☆149Updated this week
- Karonte is a static analysis tool to detect multi-binary vulnerabilities in embedded firmware☆404Updated 3 years ago
- A set of vulnerable C code snippets (with mapped CVEs)☆74Updated 8 months ago
- A lightweight dynamic instrumentation library☆1,215Updated this week
- Create SPDX documents automatically with CMake build info☆27Updated 3 years ago