Testability Pattern Catalogs for SAST
☆34Feb 18, 2025Updated last year
Alternatives and similar repositories for sast-testability-patterns
Users that are interested in sast-testability-patterns are comparing it to the libraries listed below
Sorting:
- TP-Framework: Testability Pattern Framework for SAST☆16May 10, 2024Updated last year
- Testability Tarpits: the Impact of Code Patterns on the Security Testing of Web Applications (NDSS 2022)☆27Feb 14, 2024Updated 2 years ago
- YuraScanner☆73Feb 13, 2025Updated last year
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆119Feb 13, 2026Updated last month
- A grey-box web application Fuzzer☆25Aug 16, 2024Updated last year
- ☆32May 1, 2025Updated 10 months ago
- Artifacts of the paper "Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Content" in USENIX…☆17Aug 9, 2024Updated last year
- A benchmark to evaluate taint analysis☆29Jun 20, 2022Updated 3 years ago
- Benchmark collection for analysis. The idea is to have a collection of projects in several languages as well as various sast applications…☆12Jan 7, 2021Updated 5 years ago
- ☆30Aug 30, 2022Updated 3 years ago
- Generic server for collaborative code analysis☆13Dec 19, 2016Updated 9 years ago
- A benchmark for Java gadget chain detecting algorithms.☆15Jun 20, 2025Updated 9 months ago
- ☆16Nov 24, 2023Updated 2 years ago
- A polyglot static analysis engine for detecting vulnerabilities in scripting languages native extensions based on joern.☆21Sep 1, 2025Updated 6 months ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆15Jul 24, 2025Updated 7 months ago
- Program Synthesis☆15May 17, 2021Updated 4 years ago
- OWASP WAP - Web Application Protection Project☆11Jul 24, 2019Updated 6 years ago
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆15Oct 3, 2024Updated last year
- ☆23Apr 6, 2019Updated 6 years ago
- ☆15Jul 11, 2018Updated 7 years ago
- ☆18Nov 26, 2025Updated 3 months ago
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆98Nov 27, 2023Updated 2 years ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆57Oct 25, 2023Updated 2 years ago
- ☆20Jan 19, 2026Updated 2 months ago
- Protect your PHP project from deserialization attacks! As seen on NDSS 2024☆15Aug 8, 2025Updated 7 months ago
- SWAT, a dynamic symbolic execution engine for Java Applications that uses ASM for on-the-fly byte code instrumentation.☆40Apr 30, 2025Updated 10 months ago
- ☆10Sep 25, 2024Updated last year
- ☆22Dec 28, 2024Updated last year
- ☆14Feb 4, 2020Updated 6 years ago
- The repo of "BugLens"☆39Nov 12, 2025Updated 4 months ago
- Code audit (code review) with VIM.☆17Jan 3, 2025Updated last year
- ☆43Jan 30, 2023Updated 3 years ago
- ☆30Updated this week
- ☆21Apr 30, 2021Updated 4 years ago
- Code Property Graph (CPG) frontend for binary applications and libraries.☆95Oct 28, 2021Updated 4 years ago
- IDA Hexrays To Joern☆46Nov 7, 2024Updated last year
- Awesome LLM for Cybersecurity☆12Nov 16, 2024Updated last year
- An HTTP Response fuzzer to find Vulnerabilities in Security Scanners☆27Jun 18, 2024Updated last year
- ☆19Updated this week