Open-source code analysis platform for C/C++/Java/Binary/Javascript/Python/Kotlin based on code property graphs. Discord https://discord.gg/vv4MH284Hc
☆3,340Jul 21, 2026Updated this week
Alternatives and similar repositories for joern
Users that are interested in joern are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Code Property Graph: specification, query language, and utilities☆588Updated this week
- A library to extract Code Property Graphs from C/C++, Java, Go, Python, Ruby and every other language through LLVM-IR.☆451Updated this week
- A CAT called tabby ( Code Analysis Tool )☆1,654Jan 17, 2026Updated 6 months ago
- 《深入理解CodeQL》Finding vulnerabilities with CodeQL.☆1,783Nov 21, 2023Updated 2 years ago
- An easy-to-learn/use static analysis framework for Java and Android☆1,789Jun 28, 2026Updated 3 weeks ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- BinAbsInspector: Vulnerability Scanner for Binaries☆1,666Jun 17, 2024Updated 2 years ago
- Static Value-Flow Analysis Framework for Source Code☆1,693Updated this week
- A robust parser for C/C++ storing abstract syntax trees, control flow graphs and program dependence graphs in a neo4j graph database.☆557May 10, 2019Updated 7 years ago
- CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security☆9,848Updated this week
- cwe_checker finds vulnerable patterns in binary executables☆1,347Apr 10, 2025Updated last year
- Getting started with static program analysis. 静态程序分析入门教程。☆1,762Mar 20, 2024Updated 2 years ago
- The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power…☆6,662Updated this week
- A declarative static analysis tool for jvm bytecode based Datalog like CodeQL☆341Jan 6, 2024Updated 2 years ago
- weggli is a fast and robust semantic search tool for C and C++ codebases. It is designed to help security researchers identify interestin…☆2,487Jul 12, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Recent Fuzzing Paper☆2,766Mar 19, 2026Updated 4 months ago
- Coverage-guided, in-process fuzzing for the JVM☆1,243Updated this week
- ☆357Oct 24, 2024Updated last year
- A new version of Soot with a completely overhauled architecture☆810Updated this week
- Effective Vulnerability Identification by Learning Comprehensive Program Semantics via Graph Neural Networks☆266Jan 19, 2024Updated 2 years ago
- xAST评价体系,让安全工具不再“黑盒”. The xAST evaluation benchmark makes security tools no longer a "black box".☆484May 21, 2026Updated 2 months ago
- A neurosymbolic framework for vulnerability detection in code☆407Jul 2, 2026Updated 2 weeks ago
- Source code for LLMxCPG paper☆157Mar 26, 2026Updated 3 months ago
- Framework for Automating Fuzzable Target Discovery with Static Analysis.☆549Jun 11, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ShiftLeft OverflowDB☆139May 22, 2025Updated last year
- Binary, coverage-guided fuzzer for Windows, macOS, Linux and Android☆1,371Jul 3, 2026Updated 2 weeks ago
- Python library for CPGQL server☆43Jun 4, 2024Updated 2 years ago
- Advanced Fuzzing Library - Slot your Fuzzer together in Rust! Scales across cores and machines. For Windows, Android, MacOS, Linux, no_st…☆2,608Jul 12, 2026Updated last week
- A LLVM-based static analysis framework.☆1,050Jul 9, 2026Updated last week
- Zero shot vulnerability discovery using LLMs☆2,713Feb 6, 2025Updated last year
- Soot - A Java optimization framework☆3,098Updated this week
- YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, d…☆298May 7, 2026Updated 2 months ago
- Code Property Graph (CPG) frontend for binary applications and libraries.☆97Oct 28, 2021Updated 4 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A True Instrumentable Binary Emulation Framework☆6,023Jul 2, 2026Updated 2 weeks ago
- A powerful and user-friendly binary analysis platform!☆8,959Updated this week
- SymCC: efficient compiler-based symbolic execution☆871Mar 16, 2026Updated 4 months ago
- 一些阅读源码和Fuzzing 的经验,涵盖黑盒与白盒测试..☆1,082Aug 24, 2021Updated 4 years ago
- A byte code analyzer for finding deserialization gadget chains in Java applications☆1,090Jun 15, 2021Updated 5 years ago
- A JavaScript Engine Fuzzer☆2,315Updated this week
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆15,959Updated this week