facebook / sapp
Post Processor for Facebook Static Analysis Tools.
☆140Updated this week
Alternatives and similar repositories for sapp:
Users that are interested in sapp are comparing it to the libraries listed below
- OSS-Fuzz vulnerabilities for OSV.☆154Updated this week
- Generic SAST Library☆131Updated 5 months ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆142Updated last year
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆58Updated 3 weeks ago
- A pytest-inspired, DAST framework, capable of identifying vulnerabilities in a distributed, micro-service ecosystem through chaos enginee…☆220Updated last year
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆118Updated last year
- CodeQL workshops for GitHub Universe☆93Updated 2 years ago
- A web browser with dynamic data-flow tracking enabled in the Javascript engine and DOM, based on Mozilla Firefox (https://github.com/mozi…☆94Updated last month
- SARIF Microsoft Visual Studio Code extension☆114Updated 3 weeks ago
- ☆18Updated 8 months ago
- [Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instea…☆82Updated last year
- Python classes for the SARIF object model☆43Updated last year
- Plume is a code representation benchmarking library with options to extract the AST from Java bytecode and store the result in various gr…☆73Updated 6 months ago
- Documentation of Python security☆89Updated last year
- Mayhem example templates for programming languages and fuzzers that you love!☆29Updated last year
- A cross-platform browser fuzzing framework☆307Updated 3 weeks ago
- CodeQL zero to hero blog post series challenges☆119Updated 4 months ago
- Source code for ACM CCS 2020 Paper PMForce: Systematically Analyzing postMessage Handlers at Scale☆17Updated 3 years ago
- PyPI malware packages☆58Updated 6 years ago
- Intentionally vulnerable Go web app.☆43Updated 3 months ago
- ☆82Updated 7 months ago
- Security Crawl Maze is a comprehensive testbed for web security crawlers. It contains pages representing many ways in which one can link …☆161Updated last year
- A tool that automatically creates fuzzing harnesses based on a library☆279Updated 3 years ago
- COVA - A static analysis tool to compute path conditions☆32Updated 2 years ago
- GitHub Satellite 2020 workshops on finding security vulnerabilities with CodeQL for Java/JavaScript.☆210Updated 7 months ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆43Updated 2 years ago
- My CodeQL queries collection☆96Updated last year
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 2 years ago
- Open Source Vulnerability schema.☆200Updated this week
- GraphFuzz is an experimental framework for building structure-aware, library API fuzzers.☆263Updated last year