nuprl / augur
Performant taint analysis for Node.js
☆49Updated 6 months ago
Alternatives and similar repositories for augur:
Users that are interested in augur are comparing it to the libraries listed below
- Instrumentation framework for Node.js compliant to ECMAScript 2020 based on GraalVM.☆54Updated last month
- TaintFlow, a framework for JavaScript dynamic information flow analysis.☆17Updated 2 years ago
- WALA analyses and tools that are implemented in JavaScript☆82Updated 8 years ago
- ☆31Updated 5 months ago
- A delta debugger for JavaScript☆51Updated 2 years ago
- Creates a CFG from JavaScript source code.☆68Updated 5 months ago
- A Dynamic Symbolic Execution (DSE) engine for JavaScript. ExpoSE is highly scalable, compatible with recent JavaScript standards, and sup…☆198Updated last month
- Automatically Preventing Code Injection Attacks on Node.js☆78Updated 2 years ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆128Updated 2 years ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆152Updated last year
- Type Analyzer for JavaScript☆195Updated 3 weeks ago
- ObjLupAnsys is a tool to detect prototype pollution vulnerabilities in Node.js packages. This project is written in Python and JavaScript…☆22Updated 3 years ago
- Modular static malicious JavaScript detection system☆69Updated 4 years ago
- Statically Detecting Vulnerable Data Flows in Browser Extensions at Scale☆72Updated 3 years ago
- Source code for ACM CCS 2020 Paper PMForce: Systematically Analyzing postMessage Handlers at Scale☆17Updated 3 years ago
- Available for legacy purposes. New users please see Jalangi2 https://github.com/Samsung/jalangi2☆123Updated 9 years ago
- VUDDY: A Scalable and Accurate Vulnerable Code Clone Detector (S&P'17)☆52Updated last month
- ☆68Updated 3 years ago
- creates a control flow graph from an esprima abstract syntax tree☆170Updated 7 years ago
- Static data flow-based analysis of JavaScript files to detect syntactic clones☆23Updated 4 years ago
- This repository contains a list of papers about software supply chain☆26Updated 9 months ago
- Pythia (extends AFL with Predictions)☆62Updated 3 years ago
- ☆26Updated last year
- Dynamic analysis framework for JavaScript☆446Updated last year
- JoanAudit - A security slicing tool that helps security auditors to perform their security auditing tasks more efficiently☆10Updated 7 years ago
- OSS-Fuzz - integrated with AFLGo for Patch Testing☆35Updated 7 years ago
- GraphFuzz is an experimental framework for building structure-aware, library API fuzzers.☆10Updated 2 years ago
- Artifact accompanying our ICSE '22 paper "Practical Automated Detection of Malicious npm Packages"☆43Updated 3 years ago
- ☆12Updated 3 years ago
- ☆75Updated 2 years ago