A collection of my Semgrep rules
☆54Jul 4, 2023Updated 3 years ago
Alternatives and similar repositories for semgrep-rules
Users that are interested in semgrep-rules are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- My custom semgrep rules☆24Sep 13, 2020Updated 6 years ago
- Custom semgrep rules registry☆14Aug 23, 2022Updated 4 years ago
- Collection of Semgrep rules for security analysis☆10Mar 30, 2024Updated 2 years ago
- ☆246Updated this week
- My collection of Semgrep rules for vulnerability detection on source code (swift, java, cobol)☆44Dec 3, 2025Updated 9 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Collection of rules for Static Application Security Testing (SAST) with Semgrep☆13Apr 16, 2025Updated last year
- Semgrep queries developed by Trail of Bits.☆527May 7, 2026Updated 4 months ago
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆24Oct 4, 2021Updated 4 years ago
- Semgrep rules to identify GWT attack surface☆12Apr 28, 2022Updated 4 years ago
- A collection of Semgrep rules derived from the OWASP MASTG specifically for Android applications.☆338Jun 5, 2026Updated 3 months ago
- Salesforce Policy Deviation Checker☆30Sep 30, 2020Updated 5 years ago
- A collection of my Semgrep rules to facilitate vulnerability research.☆874Sep 11, 2026Updated last week
- 该系列是从 2014 年到 2022 年的历史漏洞☆18Apr 3, 2023Updated 3 years ago
- ☆24Feb 12, 2016Updated 10 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- CVE-2022-22965 - CVE-2010-1622 redux☆19Apr 18, 2023Updated 3 years ago
- ☆14Jan 29, 2026Updated 7 months ago
- POSIX script for mail security checks of domain names☆75Jul 24, 2023Updated 3 years ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆61Apr 23, 2023Updated 3 years ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆33Nov 4, 2022Updated 3 years ago
- ☆83May 9, 2024Updated 2 years ago
- A .NET tool that uses AppDomain's to enable dynamic execution and escape detection.☆29Nov 25, 2019Updated 6 years ago
- OWASP Ukraine 2019 CTF☆12Feb 10, 2023Updated 3 years ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆45Dec 16, 2024Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Pickle decompiler plugin for Radare2☆18Aug 6, 2023Updated 3 years ago
- semgrep rules for flakiness, missed error handling, Lua antipatterns and pitfalls.☆18Nov 1, 2024Updated last year
- A lightweight linting framework designed for complex applications using a mix of third-party linters and custom rules.☆26Apr 27, 2026Updated 4 months ago
- A dockerized, improved version of the Impacket smbserver.py☆38Jun 27, 2019Updated 7 years ago
- Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.☆50Dec 24, 2020Updated 5 years ago
- Abrupt is a web application testing framework☆16Aug 30, 2013Updated 13 years ago
- Proof of concept exploit for Ivanti EPM CVE-2024-13159 and others☆13Feb 19, 2025Updated last year
- tetctf2020_amf_writeups☆20Jan 3, 2021Updated 5 years ago
- Burp Suite plugin identifies insertion points for GWT (Google Web Toolkit) requests☆13Sep 24, 2015Updated 10 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆14Aug 22, 2025Updated last year
- Scripts for Sourcegraph search results. Useful for static analysis <3☆28Jun 30, 2023Updated 3 years ago
- Demonstrates how a malicious dependency could negatively impact the build output.☆28Aug 11, 2023Updated 3 years ago
- Focused malicious code detection ruleset, with a high protection-to-noise ratio☆151Feb 24, 2025Updated last year
- Modified version of ActiveScan++ Burp Suite extension☆31Jan 30, 2017Updated 9 years ago
- jgstew's personal pages☆12Sep 14, 2026Updated last week
- Simple S3 Bucket Testing Software☆32Nov 4, 2021Updated 4 years ago