A collection of my Semgrep rules
☆54Jul 4, 2023Updated 3 years ago
Alternatives and similar repositories for semgrep-rules
Users that are interested in semgrep-rules are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- My custom semgrep rules☆24Sep 13, 2020Updated 5 years ago
- Collection of Semgrep rules for security analysis☆10Mar 30, 2024Updated 2 years ago
- ☆245Updated this week
- My collection of Semgrep rules for vulnerability detection on source code (swift, java, cobol)☆44Dec 3, 2025Updated 8 months ago
- Collection of rules for Static Application Security Testing (SAST) with Semgrep☆13Apr 16, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Semgrep queries developed by Trail of Bits.☆515May 7, 2026Updated 3 months ago
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆23Oct 4, 2021Updated 4 years ago
- Semgrep rules to identify GWT attack surface☆12Apr 28, 2022Updated 4 years ago
- apkfram was written in order to help any mobile penetration testers to identify the Framework used to develop the Android application.☆12Oct 9, 2024Updated last year
- A collection of Semgrep rules derived from the OWASP MASTG specifically for Android applications.☆335Jun 5, 2026Updated 2 months ago
- A collection of my Semgrep rules to facilitate vulnerability research.☆866Aug 7, 2026Updated last week
- Salesforce Policy Deviation Checker☆30Sep 30, 2020Updated 5 years ago
- 该系列是从 2014 年到 2022 年的历史漏洞☆18Apr 3, 2023Updated 3 years ago
- ☆24Feb 12, 2016Updated 10 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- nmapParser.py is a tool developed for consultants doing nmap scans against a large range of hosts. I found it easy to identify hosts that…☆13Jan 19, 2016Updated 10 years ago
- Script for downloading Burp Suite extension files☆12Jan 29, 2024Updated 2 years ago
- ☆14Jan 29, 2026Updated 6 months ago
- Automatic learning of (linear and nonlinear) control functions for nonlinear dynamical systems with stability certificates. The stability…☆14Jan 9, 2025Updated last year
- OWASP Threat Dragon core files☆12Jan 26, 2026Updated 6 months ago
- Okta Data Collector for BloodHound Community☆15Apr 21, 2026Updated 3 months ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆61Apr 23, 2023Updated 3 years ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆33Nov 4, 2022Updated 3 years ago
- ☆83May 9, 2024Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- HashiCorp-relevant rules for the Semgrep code analysis tool☆42Oct 3, 2023Updated 2 years ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆45Dec 16, 2024Updated last year
- Serpico-NG https://github.com/LUTECH-TMS-CERT/EHAT-NG☆12Dec 6, 2017Updated 8 years ago
- semgrep rules for flakiness, missed error handling, Lua antipatterns and pitfalls.☆18Nov 1, 2024Updated last year
- JamfHound is a python3 project designed to collect and identify attack paths in Jamf Pro tenants based on existing object permissions by …☆134Apr 23, 2026Updated 3 months ago
- A dockerized, improved version of the Impacket smbserver.py☆38Jun 27, 2019Updated 7 years ago
- Used to manage burp extensions that I find useful.☆12Apr 26, 2022Updated 4 years ago
- Abrupt is a web application testing framework☆16Aug 30, 2013Updated 12 years ago
- Static analysis tool to Identify and Fix GitHub Actions prone to Supply‑Chain Risks☆15Jun 17, 2026Updated last month
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Proof of concept exploit for Ivanti EPM CVE-2024-13159 and others☆13Feb 19, 2025Updated last year
- tetctf2020_amf_writeups☆23Jan 3, 2021Updated 5 years ago
- Burp Suite plugin identifies insertion points for GWT (Google Web Toolkit) requests☆13Sep 24, 2015Updated 10 years ago
- ☆14Aug 22, 2025Updated 11 months ago
- Automated script to convert and push Burp Suite certificate in Android, and modify Android's IP table to redirect all traffic to Burp Sui…☆111Apr 30, 2023Updated 3 years ago
- Scripts for Sourcegraph search results. Useful for static analysis <3☆28Jun 30, 2023Updated 3 years ago
- ☆59Nov 27, 2014Updated 11 years ago