Open-source code analysis platform for C/C++/Java/Binary/Javascript/Python/Kotlin based on code property graphs. Discord https://discord.gg/vv4MH284Hc
☆3,462Aug 31, 2026Updated this week
Alternatives and similar repositories for joern
Users that are interested in joern are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Code Property Graph: specification, query language, and utilities☆595Jul 22, 2026Updated last month
- A library to extract Code Property Graphs from C/C++, Java, Go, Python, Ruby and every other language through LLVM-IR.☆456Updated this week
- A CAT called tabby ( Code Analysis Tool )☆1,657Jan 17, 2026Updated 7 months ago
- 《深入理解CodeQL》Finding vulnerabilities with CodeQL.☆1,791Nov 21, 2023Updated 2 years ago
- An easy-to-learn/use static analysis framework for Java and Android☆1,806Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- BinAbsInspector: Vulnerability Scanner for Binaries☆1,673Jun 17, 2024Updated 2 years ago
- Static Value-Flow Analysis Framework for Source Code☆1,707Updated this week
- A robust parser for C/C++ storing abstract syntax trees, control flow graphs and program dependence graphs in a neo4j graph database.☆557May 10, 2019Updated 7 years ago
- CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security☆10,036Updated this week
- cwe_checker finds vulnerable patterns in binary executables☆1,353Aug 20, 2026Updated last week
- Getting started with static program analysis. 静态程序分析入门教程。☆1,767Mar 20, 2024Updated 2 years ago
- The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power…☆6,741Updated this week
- A declarative static analysis tool for jvm bytecode based Datalog like CodeQL☆341Jan 6, 2024Updated 2 years ago
- weggli is a fast and robust semantic search tool for C and C++ codebases. It is designed to help security researchers identify interestin…☆2,492Jul 12, 2024Updated 2 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Recent Fuzzing Paper☆2,768Mar 19, 2026Updated 5 months ago
- Coverage-guided, in-process fuzzing for the JVM☆1,254Updated this week
- ☆357Oct 24, 2024Updated last year
- A new version of Soot with a completely overhauled architecture☆815Updated this week
- Effective Vulnerability Identification by Learning Comprehensive Program Semantics via Graph Neural Networks☆265Jan 19, 2024Updated 2 years ago
- xAST评价体系,让安全工具不再“黑盒”. The xAST evaluation benchmark makes security tools no longer a "black box".☆491May 21, 2026Updated 3 months ago
- A neurosymbolic framework for vulnerability detection in code☆420Jul 2, 2026Updated last month
- Source code for LLMxCPG paper☆161Mar 26, 2026Updated 5 months ago
- Framework for Automating Fuzzable Target Discovery with Static Analysis.☆549Jun 11, 2026Updated 2 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ShiftLeft OverflowDB☆138May 22, 2025Updated last year
- Binary, coverage-guided fuzzer for Windows, macOS, Linux and Android☆1,381Updated this week
- Python library for CPGQL server☆45Jun 4, 2024Updated 2 years ago
- Advanced Fuzzing Library - Slot your Fuzzer together in Rust! Scales across cores and machines. For Windows, Android, MacOS, Linux, no_st…☆2,628Updated this week
- A LLVM-based static analysis framework.☆1,054Updated this week
- Zero shot vulnerability discovery using LLMs☆2,756Feb 6, 2025Updated last year
- Soot - A Java optimization framework☆3,098Aug 17, 2026Updated 2 weeks ago
- YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, d…☆319Aug 14, 2026Updated 2 weeks ago
- Code Property Graph (CPG) frontend for binary applications and libraries.☆97Oct 28, 2021Updated 4 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A True Instrumentable Binary Emulation Framework☆6,079Jul 22, 2026Updated last month
- A powerful and user-friendly binary analysis platform!☆9,048Updated this week
- SymCC: efficient compiler-based symbolic execution☆880Mar 16, 2026Updated 5 months ago
- 一些阅读源码和Fuzzing 的经验,涵盖黑盒与白盒测试..☆1,082Aug 24, 2021Updated 5 years ago
- A byte code analyzer for finding deserialization gadget chains in Java applications☆1,090Jun 15, 2021Updated 5 years ago
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆16,455Updated this week
- A JavaScript Engine Fuzzer☆2,336Updated this week