joernio / joernLinks
Open-source code analysis platform for C/C++/Java/Binary/Javascript/Python/Kotlin based on code property graphs. Discord https://discord.gg/vv4MH284Hc
☆2,792Updated last week
Alternatives and similar repositories for joern
Users that are interested in joern are comparing it to the libraries listed below
Sorting:
- Code Property Graph: specification, query language, and utilities☆552Updated last month
- A library to extract Code Property Graphs from C/C++, Java, Go, Python, Ruby and every other language through LLVM-IR.☆395Updated this week
- Coverage-guided, in-process fuzzing for the JVM☆1,184Updated this week
- cwe_checker finds vulnerable patterns in binary executables☆1,302Updated 8 months ago
- BinAbsInspector: Vulnerability Scanner for Binaries☆1,669Updated last year
- Project page for "The Fuzzing Book"☆1,226Updated 2 months ago
- AFLNet: A Greybox Fuzzer for Network Protocols (https://thuanpv.github.io/publications/AFLNet_ICST20.pdf)☆976Updated 7 months ago
- Resources related to GitHub Security Lab☆1,563Updated 3 weeks ago
- LLM powered fuzzing via OSS-Fuzz.☆1,337Updated last month
- Semgrep Community Edition rules, maintained by Semgrep and the community. Free to use under the Semgrep Rules License.☆1,044Updated this week
- Advanced Fuzzing Library - Slot your Fuzzer together in Rust! Scales across cores and machines. For Windows, Android, MacOS, Linux, no_st…☆2,415Updated this week
- FuzzBench - Fuzzer benchmarking as a service.☆1,166Updated 3 weeks ago
- Recent Fuzzing Paper☆2,719Updated last month
- JQF + Zest: Coverage-guided semantic fuzzing for Java.☆720Updated 3 months ago
- Static Value-Flow Analysis Framework for Source Code☆1,638Updated this week
- weggli is a fast and robust semantic search tool for C and C++ codebases. It is designed to help security researchers identify interestin…☆2,467Updated last year
- A neurosymbolic framework for vulnerability detection in code☆289Updated 3 weeks ago
- A curated list of awesome symbolic execution resources including essential research papers, lectures, videos, and tools.☆1,454Updated 6 months ago
- A collection of my Semgrep rules to facilitate vulnerability research.☆761Updated 2 weeks ago
- A JavaScript Engine Fuzzer☆2,126Updated 2 weeks ago
- A fork and successor of the Sulley Fuzzing Framework☆2,292Updated last week
- A LLVM-based static analysis framework.☆1,023Updated last week
- A new version of Soot with a completely overhauled architecture☆756Updated this week
- A robust parser for C/C++ storing abstract syntax trees, control flow graphs and program dependence graphs in a neo4j graph database.☆554Updated 6 years ago
- T.J. Watson Libraries for Analysis, with front ends for Java, Android, and JavaScript, and many common static program analyses.☆826Updated this week
- Binary, coverage-guided fuzzer for Windows, macOS, Linux and Android☆1,275Updated 2 months ago
- CVEfixes: Automated Collection of Vulnerabilities and Their Fixes from Open-Source Software☆310Updated last year
- Exercises to learn how to fuzz with American Fuzzy Lop☆1,274Updated 3 years ago
- Set of tests for fuzzing engines☆1,455Updated 4 years ago
- Towards Large-Scale Emulation of IoT Firmware for Dynamic Analysis☆809Updated this week