sarif-standard / sarif-spec-v1
The specification document for the Static Analysis Results Interchange Format (SARIF)
☆57Updated 4 years ago
Alternatives and similar repositories for sarif-spec-v1:
Users that are interested in sarif-spec-v1 are comparing it to the libraries listed below
- .NET code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oasis-tcs…☆200Updated last month
- OASIS SARIF TC: Repository for development of the draft standard, where requests for modification should be made via Github Issues☆182Updated 3 weeks ago
- SARIF Microsoft Visual Studio Code extension☆114Updated 3 weeks ago
- Quality domain agnostic regular expression pattern matcher that persists results to SARIF☆40Updated 2 months ago
- A React-based component for viewing SARIF files.☆94Updated 5 months ago
- SARIF Microsoft Visual Studio Viewer Extension☆49Updated last year
- Holodeck is a Fault Injection tool for testing Windows binaries and .NET applications. Holodeck utilizes fault-injection techniques to in…☆43Updated 7 years ago
- An engine for searching patterns in the source code, based on Unified AST or UST. At present time C#, Java, PHP, PL/SQL, T-SQL, MySql, a…☆60Updated 4 years ago
- User-friendly documentation for the SARIF file format.☆299Updated last year
- OWASP WebGoat.NET☆69Updated 9 years ago
- TLS implemented in f7☆43Updated 8 years ago
- Verified implementation of TLS 1.3 in F*☆176Updated 2 months ago
- REST API Fuzz Testing (RAFT): Source code for self-hosted service developed for Azure, including the API, orchestration engine, and defau…☆263Updated 3 years ago
- MsBuild task to warn about insecure NuGet libraries☆97Updated 5 years ago
- A concurency testing tool☆58Updated 6 years ago
- DevSkim plugin for VS Code.☆38Updated 5 years ago
- static analysis benchmarks from Toyota ITC☆113Updated 2 years ago
- .NET ASP.NET Security Analyser - Consolidation of multiple ASP.NET OWASP tools☆16Updated 10 years ago
- OWASP's official repository for WebGoat (ASP.NET version)☆57Updated 2 years ago
- GHInsights is a data processing pipeline using Azure Data Factory and Azure Data Lake. It processes GitHub data from the ghtorrent projec…☆44Updated 6 years ago
- Java fuzz testing library for implementations of ABNF rules such as IETF RFCs☆33Updated 7 months ago
- This repo contains code for the parser to extract data from .tm7 and .tb7 files. The project can by consumed as a NuGet package that pars…☆14Updated last year
- Inspect your builds to look for changes in filesystem, network traffic and running processes.☆13Updated 6 years ago
- Fuzzer for the .NET toolchains, developed as a project for the 2018 Language-Based Security course at Aarhus University.☆248Updated last week
- Symbolic Execution Engine for Boogie☆29Updated 3 years ago
- ☆109Updated 9 months ago
- KLEE in the browser☆52Updated 10 months ago
- pfff is mainly an OCaml API to write static analysis, dynamic analysis, code visualizations, code navigations, or style-preserving source…☆184Updated 2 years ago
- .NET library to consume and produce CycloneDX Software Bill of Materials (SBOM)☆18Updated 3 months ago
- Secure Coding Validation Suite☆70Updated 12 years ago