Testability Pattern Catalogs for SAST
☆36Feb 18, 2025Updated last year
Alternatives and similar repositories for sast-testability-patterns
Users that are interested in sast-testability-patterns are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- TP-Framework: Testability Pattern Framework for SAST☆17May 10, 2024Updated 2 years ago
- Testability Tarpits: the Impact of Code Patterns on the Security Testing of Web Applications (NDSS 2022)☆27Feb 14, 2024Updated 2 years ago
- YuraScanner☆83Feb 13, 2025Updated last year
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆119Feb 13, 2026Updated 6 months ago
- A grey-box web application Fuzzer☆27Aug 16, 2024Updated 2 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- ☆31May 1, 2025Updated last year
- Scripting Assembly Language☆12Sep 2, 2015Updated 10 years ago
- Jess is short for Joern extended by Semantic Slicing. This tool allows you to import C code into a Code Property Graph, and then compute …☆17May 22, 2024Updated 2 years ago
- A CLI wrapper for libmodsecurity (v3.0.10)☆13Nov 22, 2023Updated 2 years ago
- Artifacts of the paper "Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Content" in USENIX…☆19Aug 9, 2024Updated 2 years ago
- A benchmark to evaluate taint analysis☆28Jun 20, 2022Updated 4 years ago
- Generic server for collaborative code analysis☆13Dec 19, 2016Updated 9 years ago
- An SMT Solver for string constraints☆55Aug 14, 2026Updated 2 weeks ago
- Effective ReDoS Detection by Principled Vulnerability Modeling and Exploit Generation☆15Jul 24, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- The Ultimate File Upload Bypass Generator☆14Nov 24, 2025Updated 9 months ago
- ☆17Jun 22, 2026Updated 2 months ago
- Protect your PHP project from deserialization attacks! As seen on NDSS 2024☆15Aug 8, 2025Updated last year
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆99Nov 27, 2023Updated 2 years ago
- Collection of vulnerable and fixed PHP synthetic test cases☆66Oct 15, 2023Updated 2 years ago
- ☆22Sep 28, 2022Updated 3 years ago
- Computational Memory Neural Network Compiler☆11Aug 11, 2021Updated 5 years ago
- ☆14Feb 4, 2020Updated 6 years ago
- Code audit (code review) with VIM.☆17Jan 3, 2025Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- A benchmark for Java gadget chain detecting algorithms.☆18Jun 20, 2025Updated last year
- ☆16Nov 24, 2023Updated 2 years ago
- Code Property Graph (CPG) frontend for binary applications and libraries.☆97Oct 28, 2021Updated 4 years ago
- Indexing reachability for context-sensitive data flow analysis.☆12Jul 10, 2022Updated 4 years ago
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆17Oct 3, 2024Updated last year
- COVA - A static analysis tool to compute path conditions☆41Mar 2, 2026Updated 5 months ago
- ☆21Apr 30, 2021Updated 5 years ago
- IDA Hexrays To Joern☆45Nov 7, 2024Updated last year
- An HTTP Response fuzzer to find Vulnerabilities in Security Scanners☆27Jun 18, 2024Updated 2 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Awesome LLM for Cybersecurity☆12Nov 16, 2024Updated last year
- Taint Analysis for PHP☆45Apr 17, 2016Updated 10 years ago
- SWAT, a dynamic symbolic execution engine for Java Applications that uses ASM for on-the-fly byte code instrumentation.☆47Aug 22, 2026Updated last week
- Predator is a directed fuzzing-based Web application vulnerability validation prototype. It automates verifying static vulnerability repo…☆14May 19, 2025Updated last year
- A tool to instrument Android APKs based on Soot☆15Jul 8, 2020Updated 6 years ago
- Modelizer - is a framework for learning models from BlackBox systems using Input-Output examples☆20Apr 9, 2026Updated 4 months ago
- Inspector-gadget (a.k.a. PSHAPE - Practical Support for Half-Automated Program Exploitation) is an open source tool which assists analyst…☆27Dec 17, 2019Updated 6 years ago