spaceraccoon / npm-zooLinks
A zoo for malicious NPM packages
☆20Updated 3 years ago
Alternatives and similar repositories for npm-zoo
Users that are interested in npm-zoo are comparing it to the libraries listed below
Sorting:
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆42Updated last year
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 4 years ago
- ☆16Updated 7 years ago
- A Node.js vulnerability finding tool.☆96Updated 4 months ago
- Intentionally Vulnerable Node Applications☆16Updated 5 years ago
- Security advisories for Node.js and the JavaScript ecosystem.☆40Updated 4 years ago
- Make it easy to probe the strengths and weaknesses of a hardened Node.js stack☆19Updated 6 years ago
- research☆151Updated last year
- An extended Node.js runtime with additional security mechanisms built-in. Protects your Node.js applications from injection attacks such …☆31Updated 4 years ago
- Cure53 Browser Security White Paper☆300Updated 8 years ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆155Updated last year
- Mitigate security concerns of Dependency Confusion supply chain security risks☆50Updated 5 months ago
- Snyk Node Runtime Agent☆16Updated 3 years ago
- rules for scanjs functionality☆28Updated 4 years ago
- Automatically Preventing Code Injection Attacks on Node.js☆78Updated 3 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆237Updated 3 months ago
- Generic SAST Library☆133Updated 5 months ago
- JavaScript Static Code Analysis☆25Updated 10 years ago
- JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.☆260Updated last week
- Collection of python helper API's for interacting with LGTM.com in ways the official API doesn't support.☆24Updated 3 years ago
- A Chrome extension static analysis tool to help aide in security reviews.☆161Updated 2 years ago
- A tool to perform static analysis on regexes to determine whether they are vulnerable to ReDoS.☆111Updated 3 years ago
- PoC for CVE-2018-1002105.☆222Updated 6 years ago
- Finding potential software vulnerabilities from git commit messages☆419Updated 2 years ago
- RegEx Denial of Service (ReDos) Scanner☆180Updated 8 years ago
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆32Updated 11 months ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆61Updated 6 months ago
- Probe a rendering engine for vulnerabilities and other features☆367Updated 4 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 8 years ago
- Web app authorisation coverage scanning☆236Updated 2 years ago