oliverklee / pixyLinks
Pixy is a scanner static code analysis tools that scans PHP applications for security vulnerabilities.
☆139Updated last year
Alternatives and similar repositories for pixy
Users that are interested in pixy are comparing it to the libraries listed below
Sorting:
- Taint Analysis for PHP☆45Updated 9 years ago
- RIPS - A static source code analyser for vulnerabilities in PHP scripts☆356Updated 9 years ago
- Collection of vulnerable and fixed PHP synthetic test cases☆62Updated last year
- Security-related PHP7 OPcache abuse tools and demo☆313Updated 2 years ago
- Web Input Vector Extractor Teaser☆132Updated 3 years ago
- A tool that can scan php vulnerabilities automatically using static analysis methods☆489Updated 7 years ago
- A PHP code transformer to provide protection against injection attacks☆10Updated 14 years ago
- ☆23Updated 6 years ago
- Deprecated: Please visit https://github.com/github/codeql instead.☆81Updated 3 years ago
- Symbolic execution inspired PHP application scanner for code-path discovery☆32Updated 6 years ago
- Deemon is a tool to detect CSRF in web applications. Deemon has been used for the paper "Deemon: Detecting CSRF with Dynamic Analysis and…☆75Updated 7 years ago
- OWASP WAP - Web Application Protection Project☆11Updated 5 years ago
- Proof of concept exploit, showing how to do bytecode injection through untrusted deserialization with Spring Framework 4.2.4☆116Updated 6 years ago
- CodeIgniter <=2.1.4 session cookie decryption vulnerability☆39Updated 8 years ago
- Parser utility to generate ASTs from PHP source code suitable to be processed by Joern.☆17Updated 6 years ago
- RIPS - A static source code analyser for vulnerabilities in PHP scripts☆317Updated 3 years ago
- PHP parser written in Python using PLY☆369Updated 2 years ago
- procfs-based PHP sandbox bypass☆134Updated 6 years ago
- A static analysis tool for security☆343Updated 2 weeks ago
- Parser utility to generate ASTs from PHP source code suitable to be processed by Joern.☆36Updated 5 years ago
- ☆20Updated 9 years ago
- ☆46Updated 9 years ago
- A PoC for exploiting Guzzle's HTTP_PROXY untrusted read☆55Updated 8 years ago
- Challenges I created for 35c3☆48Updated 6 years ago
- A Java serializer in JavaScript☆81Updated 7 years ago
- A PHP7 extension that can hook most functions/classes and parts of opcodes☆242Updated 3 years ago
- A static analysis API for finding deserialization attack gadgets☆38Updated 2 years ago
- ☆80Updated 4 years ago
- Java taint propagation for java. Define tainted sources, sanitizer methods and sinks via aspects.☆28Updated 6 years ago
- A PHP static code analyser for potential vulnerabilities☆29Updated 10 years ago