ossf / cve-bin-toolLinks
The CVE Binary Tool helps you determine if your system includes known vulnerabilities. You can scan binaries for over 350 common, vulnerable components (openssl, libpng, libxml2, expat and others), or if you know the components used, you can get a list of known vulnerabilities associated with an SBOM or a list of components and versions.
☆1,579Updated last week
Alternatives and similar repositories for cve-bin-tool
Users that are interested in cve-bin-tool are comparing it to the libraries listed below
Sorting:
- A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sp…☆640Updated 2 weeks ago
- Open Source Package Analysis☆857Updated 8 months ago
- A tool for checking the security hardening options of the Linux kernel☆2,007Updated this week
- GuardDog is a CLI tool to Identify malicious PyPI and npm packages☆879Updated last week
- Pilot program for CVE submission through GitHub. CVE Record Submission via Pilot PRs ending 6/30/2023☆1,491Updated 6 months ago
- a static analysis tool for finding vulnerabilities in C/C++ source code☆550Updated last year
- Semgrep Community Edition rules, maintained by Semgrep and the community. Free to use under the Semgrep Rules License.☆1,038Updated this week
- cve-search - a tool to perform local searches for known vulnerabilities☆2,562Updated last week
- cwe_checker finds vulnerable patterns in binary executables☆1,296Updated 8 months ago
- Global Security Database☆315Updated last year
- Firmware Analysis and Comparison Tool☆1,399Updated 2 weeks ago
- OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for …☆1,186Updated this week
- Open source vulnerability DB and triage service.☆2,418Updated this week
- EMBA - The firmware security analyzer☆3,245Updated this week
- An open source threat modeling tool from OWASP☆1,263Updated this week
- EMBArk - The firmware security scanning environment☆365Updated 2 weeks ago
- A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerabilit…☆425Updated this week
- A collection of my Semgrep rules to facilitate vulnerability research.☆759Updated this week
- LLM powered fuzzing via OSS-Fuzz.☆1,325Updated last month
- BinAbsInspector: Vulnerability Scanner for Binaries☆1,668Updated last year
- Binary Analysis Next Generation (BANG)☆517Updated 3 weeks ago
- IoTGoat is a deliberately insecure firmware created to educate software developers and security professionals with testing commonly foun…☆846Updated 2 months ago
- Zero shot vulnerability discovery using LLMs☆2,428Updated 10 months ago
- Vulnerability Intelligence Platform☆2,368Updated last week
- A repo to conduct vulnerability enrichment.☆703Updated this week
- ClusterFuzzLite - Simple continuous fuzzing that runs in CI.☆512Updated 2 weeks ago
- A Python pickling decompiler and static analyzer☆588Updated this week
- A fork and successor of the Sulley Fuzzing Framework☆2,286Updated this week
- Paranoid's library contains implementations of checks for well known weaknesses on cryptographic artifacts.☆798Updated 6 months ago
- Linux Kernel Defence Map shows the relationships between vulnerability classes, exploitation techniques, bug detection mechanisms, and de…☆2,250Updated 11 months ago