trailofbits / codeql-queries
CodeQL queries developed by Trail of Bits
☆87Updated 2 months ago
Alternatives and similar repositories for codeql-queries:
Users that are interested in codeql-queries are comparing it to the libraries listed below
- Coverage-Guided Greybox Distributed Fuzzer☆127Updated 6 months ago
- Mayhem example templates for programming languages and fuzzers that you love!☆28Updated last year
- CodeQL workshops for GitHub Universe☆92Updated 2 years ago
- AutoCorpus is a tool backed by a large language model (LLM) for automatically generating corpus files for fuzzing.☆54Updated 9 months ago
- Witcher is the first framework for using AFL to fuzz web applications.☆80Updated last year
- Collection of community-driven CodeQL query, library and extension packs☆135Updated last week
- VirtFuzz is a Linux Kernel Fuzzer that uses VirtIO to provide inputs into the kernels subsystem. It is built with LibAFL.☆119Updated 8 months ago
- A coverage-guided REST API fuzzer developed on top of LibAFL☆110Updated this week
- ☆123Updated 9 months ago
- PASTIS: Collaborative Fuzzing Framework☆159Updated 6 months ago
- Testability Pattern Catalogs for SAST☆29Updated this week
- 🐛 UCLA ACM Cyber's Fuzzing Lab☆76Updated last month
- A curated list of Grammar based fuzzing research papers, codes, tutorials☆119Updated 2 years ago
- CodeQL library and queries for iterator invalidation☆20Updated 3 years ago
- OSS-Fuzz vulnerabilities for OSV.☆147Updated this week
- ☆69Updated 2 years ago
- Automatically fuzz Rust projects from scratch☆55Updated 9 months ago
- A set of Code-ql/Joern queries to find vulnerabilities☆57Updated 3 years ago
- All challenges from DiceCTF 2022☆32Updated 3 years ago
- VulZoo: A Comprehensive Vulnerability Intelligence Dataset (ASE 2024 Demo)☆30Updated 3 months ago
- a browser fuzzer☆32Updated 11 months ago
- Improving security and resilience of WebAssembly VMs/runtimes/parsers using fuzzing☆87Updated 6 months ago
- 模糊测试种子库 comprehensive croups for fuzzing seeds with carfefully selected(rate=coverage/filesize)☆22Updated 3 years ago
- Coverage-guided Fuzzing as Online Stochastic Control☆44Updated 3 months ago
- CodeQL zero to hero blog post series challenges☆109Updated 2 months ago
- Blogpost about optimizing binary-only fuzzing with AFL++☆63Updated last year
- Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js☆64Updated last year
- blackhat usa 2022 I attended☆72Updated 2 years ago
- A framework for identifying vulnerabilities in VS Code extensions☆16Updated 7 months ago
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆93Updated last year