ligurio / semgrep-rulesLinks
semgrep rules for flakiness, missed error handling, Lua antipatterns and pitfalls.
☆17Updated last year
Alternatives and similar repositories for semgrep-rules
Users that are interested in semgrep-rules are comparing it to the libraries listed below
Sorting:
- Automatic fuzz targets generation for Golang packages☆55Updated last month
- Go library for SARIF - Static Analysis Results Interchange Format☆81Updated 2 months ago
- This is a go-protobuf-mutator library for random value mutations. This is a Go equivalent of libprotobuf-mutator, which is implemented in…☆35Updated last week
- Creates CycloneDX Software Bill-of-Materials (SBOM) from Go projects. So you can use it with DependencyTrack to monitor security issues i…☆21Updated 5 years ago
- Docker Secure Computing Profile Generator☆49Updated 4 years ago
- eBPF based syscalls, files and network events tracing framework☆92Updated 5 years ago
- 🚰 Static taint analysis for Go programs.☆80Updated last month
- BPF based FIM solution☆42Updated 2 years ago
- egrets monitors egress☆46Updated 5 years ago
- Build custom Docker seccomp profiles for containers by finding syscalls it uses.☆91Updated 2 months ago
- Static code analysis tool to find unsafe usages in Go packages and their dependencies☆44Updated 5 years ago
- Fuzzing Go crypto☆74Updated 6 years ago
- ☆27Updated 9 years ago
- ☆21Updated 4 months ago
- Low-effort reachability analysis for third-party code vulnerabilities.☆22Updated 2 years ago
- A project to run fuzzing jobs at scale with Kubernetes.☆148Updated 4 years ago
- CLI to integrate continuous fuzzing with Fuzzit (no longer available)☆222Updated 5 years ago
- ☆29Updated 11 months ago
- Golang example code showing dangers with unsafe.Pointer usages☆52Updated 5 years ago
- A tool for interacting with live processes/containers☆22Updated 3 years ago
- efficient linux security monitoring☆26Updated 7 years ago
- Corpus for github.com/dvyukov/go-fuzz examples☆201Updated 4 years ago
- Simplifying Seccomp enforcement in containerized or non-containerized apps☆112Updated 5 years ago
- Go parser for maven Project Object Model (POM) file☆23Updated 3 years ago
- Going Florida on container keyring masks. A tool to demonstrate the ineffectivity containers have on isolating Linux Kernel keyrings.☆44Updated last month
- Detect compiler names and versions from ELF files☆27Updated 7 months ago
- ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.☆118Updated 3 weeks ago
- Go Taint CHeck Analyser☆43Updated 6 years ago
- A place to systematically store software bill of materials (SBOM) documents.☆50Updated 2 years ago
- With this tool, projects can be compiled easily for fuzzing with AFL or for static code analysis with tools like CBMC. One-line-scan hook…☆21Updated 3 years ago