githubsatelliteworkshops / codeql
GitHub Satellite 2020 workshops on finding security vulnerabilities with CodeQL for Java/JavaScript.
☆210Updated 7 months ago
Alternatives and similar repositories for codeql
Users that are interested in codeql are comparing it to the libraries listed below
Sorting:
- My CodeQL queries collection☆97Updated last year
- A static byte code analyzer for Java deserialization gadget research☆243Updated 8 years ago
- When MVC magic turns black☆292Updated 4 years ago
- Personal CodeQL queries☆62Updated last week
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 2 years ago
- Finding Java gadget chains with CodeQL☆169Updated 4 months ago
- GreHack 2021 CodeQL for Java workshop☆75Updated 3 years ago
- ☆190Updated 6 months ago
- Collection of community-driven CodeQL query, library and extension packs☆153Updated last week
- Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js☆65Updated last year
- Compiled dataset of Java deserialization CVEs☆61Updated 4 years ago
- [Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instea…☆82Updated last year
- Slides/Demos from the BSides Munich 2019 talk "Attacking Java RMI in 2019"☆100Updated 5 years ago
- A vulnerable application exposing Spring Boot Actuators☆122Updated 6 years ago
- Ready to use docker image for CodeQL☆89Updated last year
- CodeQL zero to hero blog post series challenges☆121Updated 5 months ago
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆118Updated last year
- Grammar-based HTTP/1 fuzzer with mutation ability☆250Updated 6 months ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆349Updated 2 years ago
- ☆60Updated 2 years ago
- ☆71Updated 3 years ago
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆58Updated 3 weeks ago
- Starter workspace to use with the CodeQL extension for Visual Studio Code.☆523Updated 2 weeks ago
- A Node.js vulnerability finding tool.☆96Updated 4 years ago
- A static analysis API for finding deserialization attack gadgets☆38Updated 2 years ago
- Collection of bypass gadgets to extend and wrap ysoserial payloads☆352Updated 3 years ago
- Burp Wiener API (Legacy)☆60Updated last year
- Spring Boot Actuator (jolokia) XXE/RCE☆317Updated 4 years ago
- ☆148Updated 5 years ago
- jws2pubkey tool☆38Updated 11 months ago