CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
☆9,511Apr 23, 2026Updated this week
Alternatives and similar repositories for codeql
Users that are interested in codeql are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Binaries for the CodeQL CLI☆965Apr 15, 2026Updated last week
- 《深入理解CodeQL》Finding vulnerabilities with CodeQL.☆1,765Nov 21, 2023Updated 2 years ago
- Starter workspace to use with the CodeQL extension for Visual Studio Code.☆581Apr 15, 2026Updated last week
- A CAT called tabby ( Code Analysis Tool )☆1,646Jan 17, 2026Updated 3 months ago
- Codeql学习笔记☆902Apr 25, 2022Updated 3 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- The CodeQL extractor and libraries for Go.☆470Jan 5, 2023Updated 3 years ago
- Resources related to GitHub Security Lab☆1,600Dec 2, 2025Updated 4 months ago
- An extension for Visual Studio Code that adds rich language support for CodeQL☆520Apr 16, 2026Updated last week
- CodeQL Java 全网最全的中文学习资料☆799Mar 18, 2022Updated 4 years ago
- Share Things Related to Java - Java安全漫谈笔记相关内容☆2,005Apr 9, 2025Updated last year
- Java web common vulnerabilities and security code which is base on springboot and spring security☆2,659Dec 2, 2024Updated last year
- KunLun-M是一个完全开源的静态白盒扫描工具,支持PHP、JavaScript的语义扫描,基础安全、组件安全扫描,Chrome Ext\Solidity的基础扫描。☆2,384Jan 16, 2026Updated 3 months ago
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆14,825Apr 17, 2026Updated last week
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆8,854Dec 4, 2025Updated 4 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- A byte code analyzer for finding deserialization gadget chains in Java applications☆1,080Jun 15, 2021Updated 4 years ago
- Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security…☆2,695Mar 14, 2024Updated 2 years ago
- Open-source code analysis platform for C/C++/Java/Binary/Javascript/Python/Kotlin based on code property graphs. Discord https://discord.…☆3,090Updated this week
- ☆3,677Jan 9, 2025Updated last year
- Actions for running CodeQL analysis☆1,525Updated this week
- Pre-Built Vulnerable Environments Based on Docker-Compose☆20,557Updated this week
- MySQL Fake Server use to help MySQL Client File Reading and JDBC Client Java Deserialize☆1,367Nov 18, 2021Updated 4 years ago
- ☆836Jun 7, 2022Updated 3 years ago
- A helpful Java Deserialization exploit framework.☆1,241Feb 17, 2025Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list☆6,129Mar 10, 2021Updated 5 years ago
- 📦 Make security testing of K8s, Docker, and Containerd easier.☆4,627Apr 13, 2026Updated last week
- OSS-Fuzz - continuous fuzzing for open source software.☆12,150Updated this week
- 《Java安全-只有Java安全才能拯救宇宙》Only Java Security Can Save The Universe.☆2,881Aug 4, 2023Updated 2 years ago
- A powerful browser crawler for web vulnerability scanners☆3,029Mar 11, 2025Updated last year
- Burp suite 分块传输辅助插件☆2,032Feb 23, 2022Updated 4 years ago
- An easy-to-learn/use static analysis framework for Java☆1,774Mar 22, 2026Updated last month
- java内存对象搜索辅助工具☆823Sep 23, 2022Updated 3 years ago
- 自己学习java安全的一些总结,主要是安全审计相关☆1,699Jan 5, 2022Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabl…☆28,013Updated this week
- KCon is a famous Hacker Con powered by Knownsec Team.☆4,667Aug 28, 2024Updated last year
- APIKit:Discovery, Scan and Audit APIs Toolkit All In One.☆2,260Apr 2, 2024Updated 2 years ago
- The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power…☆6,472Apr 16, 2026Updated last week
- Fastjson姿势技巧集合☆1,838Oct 20, 2023Updated 2 years ago
- JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)☆2,798Mar 22, 2023Updated 3 years ago
- BinAbsInspector: Vulnerability Scanner for Binaries☆1,670Jun 17, 2024Updated last year