trailofbits / cvedbLinks
CVE querying library and utility that uses a local store syncing directly to the National Vulnerability Database
☆22Updated 2 years ago
Alternatives and similar repositories for cvedb
Users that are interested in cvedb are comparing it to the libraries listed below
Sorting:
- Code Hierarchy Exploration Net (chen)☆21Updated last week
- atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.☆71Updated last week
- Coverage-Guided Greybox Distributed Fuzzer☆132Updated 5 months ago
- Trail of Bits Testing Handbook☆82Updated last week
- CodeQL queries developed by Trail of Bits☆129Updated last month
- A coverage-guided REST API fuzzer developed on top of LibAFL☆141Updated this week
- Generation-based, context-free grammar fuzzer.☆52Updated 3 years ago
- MATE is a suite of tools for interactive program analysis with a focus on hunting for bugs in C and C++ code using Code Property Graphs.☆196Updated 2 years ago
- SARIF Explorer: A VSCode extension that helps you visualize and triage static analysis results☆37Updated 3 weeks ago
- A tool that automatically creates fuzzing harnesses based on a library☆279Updated 3 years ago
- Fuzz Introspector -- introspect, extend and optimise fuzzers☆431Updated this week
- Modular framework for file information extraction and dependency analysis to generate accurate SBOMs☆36Updated this week
- FitM, the Fuzzer in the Middle, can fuzz client and server binaries at the same time using userspace snapshot-fuzzing and network emulati…☆289Updated 3 years ago
- SAST + LLM Interprocedural Context Extractor☆117Updated last month
- Extensible Platform for Malware Analysis☆17Updated 4 years ago
- A framework for instrumenting build tools☆90Updated last month
- CodeQL library and queries for iterator invalidation☆22Updated 4 years ago
- The Python Version of our Not Go-ing Anywhere Vulnerable Application☆11Updated last year
- Common Corpus is used to build coverage-minimized corpus data sets for fuzzing.☆27Updated 2 years ago
- ☆151Updated last month
- Generate CPG for multiple languages for code and threat analysis☆11Updated 2 years ago
- ☆42Updated this week
- GitHub Actions based repository scanning workflows with a primary goal of evaluating C & C++ repositories for risks.☆16Updated last year
- Fast and effective grammar-based fuzzing based on Gramatron☆15Updated 6 months ago
- ☆48Updated last year
- ☆95Updated 3 years ago
- A dataset of software supply chain compromises. Please help us maintain it!☆130Updated 3 years ago
- A static analyzer powered by AI☆22Updated last year
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and o…☆78Updated 3 weeks ago
- Practical Data-Only Attack Generation☆43Updated last year