google / oss-fuzz-vulns
OSS-Fuzz vulnerabilities for OSV.
☆154Updated this week
Alternatives and similar repositories for oss-fuzz-vulns:
Users that are interested in oss-fuzz-vulns are comparing it to the libraries listed below
- Fuzz Introspector -- introspect, extend and optimise fuzzers☆415Updated this week
- Collection of community-driven CodeQL query, library and extension packs☆151Updated this week
- CodeQL zero to hero blog post series challenges☆119Updated 4 months ago
- Post Processor for Facebook Static Analysis Tools.☆140Updated this week
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆142Updated last year
- CodeQL workshops for GitHub Universe☆93Updated 2 years ago
- Open Source Vulnerability schema.☆200Updated this week
- CodeQL queries developed by Trail of Bits☆97Updated 3 weeks ago
- Witcher is the first framework for using AFL to fuzz web applications.☆87Updated last year
- ☆26Updated last year
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.1, purl, and vers…☆114Updated last week
- GraphFuzz is an experimental framework for building structure-aware, library API fuzzers.☆263Updated last year
- [Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instea…☆82Updated last year
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆118Updated last year
- Mayhem example templates for programming languages and fuzzers that you love!☆29Updated last year
- A set of Code-ql/Joern queries to find vulnerabilities☆58Updated 3 years ago
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and o…☆75Updated last week
- PASTIS: Collaborative Fuzzing Framework☆164Updated 8 months ago
- blackhat usa 2022 I attended☆72Updated 2 years ago
- An open-source dataset of malicious software packages found in the wild, 100% vetted by humans.☆201Updated last week
- Grammar-based HTTP/2 fuzzer with mutation ability☆43Updated 2 years ago
- FitM, the Fuzzer in the Middle, can fuzz client and server binaries at the same time using userspace snapshot-fuzzing and network emulati…☆291Updated 3 years ago
- ☆93Updated 3 years ago
- ☆43Updated 9 months ago
- Pairing Security Advisories with Vulnerable Functions Using Open-Source LLMs - DIMVA '24☆16Updated 8 months ago
- Grammar-based HTTP/1 fuzzer with mutation ability☆250Updated 6 months ago
- Coverage-Guided Greybox Distributed Fuzzer☆130Updated 2 weeks ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆133Updated 2 years ago
- VFCFinder: Searching for the Missing Vulnerability Fixing Commits☆29Updated last year
- VulZoo: A Comprehensive Vulnerability Intelligence Dataset (ASE 2024 Demo)☆42Updated last month