facebook / sapp
Post Processor for Facebook Static Analysis Tools.
☆137Updated this week
Alternatives and similar repositories for sapp:
Users that are interested in sapp are comparing it to the libraries listed below
- OSS-Fuzz vulnerabilities for OSV.☆147Updated this week
- Generic SAST Library☆127Updated 3 months ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆141Updated 11 months ago
- Python classes for the SARIF object model☆43Updated 10 months ago
- SARIF Microsoft Visual Studio Code extension☆113Updated 4 months ago
- Fuzz Introspector -- introspect, extend and optimise fuzzers☆398Updated this week
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.1, purl, and vers…☆105Updated this week
- A pytest-inspired, DAST framework, capable of identifying vulnerabilities in a distributed, micro-service ecosystem through chaos enginee…☆218Updated 9 months ago
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆114Updated last year
- Mayhem example templates for programming languages and fuzzers that you love!☆28Updated last year
- Plume is a code representation benchmarking library with options to extract the AST from Java bytecode and store the result in various gr…☆73Updated 4 months ago
- CodeQL queries developed by Trail of Bits☆87Updated 2 months ago
- CodeQL workshops for GitHub Universe☆92Updated 2 years ago
- Documentation of Python security☆89Updated last year
- Open Source Vulnerability schema.☆191Updated last week
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆56Updated 10 months ago
- Intentionally vulnerable Go web app.☆43Updated 3 weeks ago
- ☆33Updated 11 years ago
- Plusfish is a classic web application vulnerability scanner/fuzzer and aimed at security professionals☆28Updated 2 years ago
- Manager of third-party sources of Semgrep rules 🗂☆78Updated 7 months ago
- Default query sets for Joern☆26Updated 3 years ago
- Collection of community-driven CodeQL query, library and extension packs☆135Updated last week
- Scan pypi for typosquatting☆38Updated 2 years ago
- Generate thousands of pull requests to fix widespread security vulnerabilities across GitHub.☆34Updated 2 weeks ago
- Source code for ACM CCS 2020 Paper PMForce: Systematically Analyzing postMessage Handlers at Scale☆17Updated 3 years ago
- A cross-platform browser fuzzing framework☆306Updated this week
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and o…☆75Updated last month
- coverage guided fuzz testing for python☆226Updated 4 years ago
- Attempts at fuzzing Python unpicklers☆37Updated 10 months ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆44Updated last year