google / oss-fuzz-vulnsLinks
OSS-Fuzz vulnerabilities for OSV.
☆156Updated this week
Alternatives and similar repositories for oss-fuzz-vulns
Users that are interested in oss-fuzz-vulns are comparing it to the libraries listed below
Sorting:
- Post Processor for Facebook Static Analysis Tools.☆141Updated this week
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆118Updated last year
- Fuzz Introspector -- introspect, extend and optimise fuzzers☆417Updated this week
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.1, purl, and vers…☆119Updated last week
- CodeQL queries developed by Trail of Bits☆99Updated 3 weeks ago
- CodeQL workshops for GitHub Universe☆96Updated 2 years ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆144Updated last year
- A set of Code-ql/Joern queries to find vulnerabilities☆59Updated 4 years ago
- Collection of community-driven CodeQL query, library and extension packs☆160Updated last week
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and o…☆75Updated last month
- An open-source dataset of malicious software packages found in the wild, 100% vetted by humans.☆206Updated this week
- VFCFinder: Searching for the Missing Vulnerability Fixing Commits☆29Updated last year
- Grammar-based HTTP/2 fuzzer with mutation ability☆45Updated 2 years ago
- GraphFuzz is an experimental framework for building structure-aware, library API fuzzers.☆263Updated last year
- Open Source Vulnerability schema.☆199Updated last week
- Witcher is the first framework for using AFL to fuzz web applications.☆89Updated last year
- CodeQL zero to hero blog post series challenges☆122Updated 5 months ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆133Updated 2 years ago
- Coverage-Guided Greybox Distributed Fuzzer☆131Updated last month
- ☆42Updated 2 years ago
- Plume is a code representation benchmarking library with options to extract the AST from Java bytecode and store the result in various gr…☆74Updated 7 months ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆153Updated last year
- Home page of project "KB"☆126Updated 2 months ago
- Artifact for ICSE 2023☆49Updated 2 years ago
- ☆44Updated 10 months ago
- VulZoo: A Comprehensive Vulnerability Intelligence Dataset (ASE 2024 Demo)☆48Updated 2 months ago
- Testability Pattern Catalogs for SAST☆30Updated 3 months ago
- Downloader for Firefox/jsshell builds for fuzzing.☆41Updated 2 weeks ago
- ☆60Updated 2 years ago
- SARIF Microsoft Visual Studio Code extension☆115Updated last month