oliverklee / pixy
Pixy is a scanner static code analysis tools that scans PHP applications for security vulnerabilities.
☆139Updated last year
Alternatives and similar repositories for pixy:
Users that are interested in pixy are comparing it to the libraries listed below
- Taint Analysis for PHP☆44Updated 8 years ago
- PHP language analyses in Rascal☆27Updated 2 months ago
- OWASP WAP - Web Application Protection Project☆11Updated 5 years ago
- Collection of vulnerable and fixed PHP synthetic test cases☆60Updated last year
- ☆23Updated 5 years ago
- Web Input Vector Extractor Teaser☆131Updated 3 years ago
- Proof of concept exploit, showing how to do bytecode injection through untrusted deserialization with Spring Framework 4.2.4☆116Updated 5 years ago
- Parser utility to generate ASTs from PHP source code suitable to be processed by Joern.☆16Updated 6 years ago
- A PHP code transformer to provide protection against injection attacks☆10Updated 13 years ago
- A Control Flow Graph implementation in PHP☆245Updated 2 weeks ago
- Security-related PHP7 OPcache abuse tools and demo☆308Updated 2 years ago
- ☆46Updated 8 years ago
- A PHP static code analyser for potential vulnerabilities☆28Updated 10 years ago
- A Java serializer in JavaScript☆82Updated 6 years ago
- This is the repository for JÄk. I created it as prototype during my masterthesis.☆30Updated 7 years ago
- A tool that can scan php vulnerabilities automatically using static analysis methods☆488Updated 6 years ago
- RIPS - A static source code analyser for vulnerabilities in PHP scripts☆350Updated 8 years ago
- Java taint propagation for java. Define tainted sources, sanitizer methods and sinks via aspects.☆28Updated 6 years ago
- Symbolic execution inspired PHP application scanner for code-path discovery☆30Updated 5 years ago
- Parser utility to generate ASTs from PHP source code suitable to be processed by Joern.☆35Updated 4 years ago
- procfs-based PHP sandbox bypass☆133Updated 6 years ago
- Deemon is a tool to detect CSRF in web applications. Deemon has been used for the paper "Deemon: Detecting CSRF with Dynamic Analysis and…☆75Updated 6 years ago
- A static analysis tool for security☆335Updated 2 months ago
- 各种漏洞poc、Exp的收集或编写☆33Updated 8 years ago
- St2-052☆55Updated 7 years ago
- PHP synthetic test cases generator☆10Updated last year
- Simple php backdoor based on extension☆74Updated 10 years ago
- RIPS - A static source code analyser for vulnerabilities in PHP scripts☆311Updated 3 years ago
- Burp Suite plugin which implement PyJFuzz for fuzzing web application.☆56Updated 7 years ago
- Owasp Orizon is a source code static analyzer tool designed to spot security issues in Java applications.☆144Updated 7 years ago