trailofbits / testing-handbook
Trail of Bits Testing Handbook
☆58Updated 3 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for testing-handbook
- Coverage-Guided Greybox Distributed Fuzzer☆128Updated 3 months ago
- Manager of third-party sources of Semgrep rules 🗂☆76Updated 4 months ago
- ☆76Updated 5 months ago
- Automated vulnerability discovery and annotation☆61Updated 3 months ago
- CodeQL queries developed by Trail of Bits☆75Updated this week
- Automatically fuzz Rust projects from scratch☆54Updated 6 months ago
- DEbian Cve REproducer Tool☆22Updated last year
- A coverage-guided REST API fuzzer developed on top of LibAFL☆92Updated last week
- Toolkit for creating cryptographic figures and videos.☆29Updated 6 months ago
- XBOW Validation Benchmarks☆53Updated 2 months ago
- ☆40Updated last month
- CQ, a code security scanner☆97Updated 6 months ago
- ☆31Updated last year
- Open Source eBPF Malware Analysis Framework☆43Updated last month
- ☆41Updated 4 months ago
- A curated list of argument injection vectors☆37Updated 2 months ago
- Resources for Browser Security Research☆25Updated 2 years ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆22Updated 3 months ago
- SARIF Explorer: A VSCode extension that helps you visualize and triage static analysis results☆21Updated last week
- The public release of LeftoverLocals code☆64Updated 10 months ago
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆131Updated last year
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆70Updated last year
- Common Corpus is used to build coverage-minimized corpus data sets for fuzzing.☆24Updated last year
- Create code bookmarks and code highlights with a click.☆176Updated 3 weeks ago
- Atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.☆52Updated this week
- Command line fuzzer and bruteforcer 🌪 wfuzz for command☆86Updated 2 years ago
- Leveraging CVEs as North Stars in vulnerability discovery and comprehension.☆61Updated 7 months ago
- boostsecurityio/lotp☆101Updated 7 months ago
- Paramalyzer - Burp extension for parameter analysis of large-scale web application penetration tests.☆29Updated 2 years ago
- ☆115Updated last year