xbow-engineering / validation-benchmarksLinks
XBOW Validation Benchmarks
☆323Updated 5 months ago
Alternatives and similar repositories for validation-benchmarks
Users that are interested in validation-benchmarks are comparing it to the libraries listed below
Sorting:
- CodeQL zero to hero blog post series challenges☆154Updated last month
- Automated web vulnerability scanning with LLM agents☆362Updated 4 months ago
- Grammar-based HTTP/1 fuzzer with mutation ability☆258Updated last year
- Collection of community-driven CodeQL query, library and extension packs☆194Updated 3 weeks ago
- Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js☆74Updated last year
- ☆204Updated last year
- ☆466Updated last week
- Black box fuzzer for web applications☆434Updated 3 months ago
- Learn AI security through a series of vulnerable LLM CTF challenges. No sign ups, no cloud fees, run everything locally on your system.☆308Updated last year
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆52Updated 2 years ago
- 🧠 LLMFuzzer - Fuzzing Framework for Large Language Models 🧠 LLMFuzzer is the first open-source fuzzing framework specifically designed …☆324Updated last year
- A source code static analysis platform for AppSec enthusiasts.☆263Updated 8 months ago
- How effective are LLMs in identifying and exploiting security vulnerabilities?☆67Updated 8 months ago
- MCP for Security: A collection of Model Context Protocol servers for popular security tools like SQLMap, FFUF, NMAP, Masscan and more. In…☆477Updated 2 months ago
- A collection of Server-Side Prototype Pollution gadgets and exploits☆214Updated 9 months ago
- MCP Server for Burp☆362Updated last week
- Community reconstruction of the legacy JSON NVD Data Feeds. This project uses and redistributes data from the NVD API but is neither endo…☆183Updated last week
- AutoSpear☆68Updated last year
- CTF challenges designed and implemented in machine learning applications☆184Updated last month
- SAST + LLM Interprocedural Context Extractor☆139Updated 2 weeks ago
- YuraScanner☆61Updated 9 months ago
- TheHulk is a dynamic analysis tool designed to detect and exploit DOM Clobbering vulnerabilities.☆68Updated 2 months ago
- A collection of client-side libraries with HTML injection vulnerabilities and DOM clobbering gadgets.☆39Updated 2 months ago
- Manager of third-party sources of Semgrep rules 🗂☆90Updated last year
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆112Updated 2 months ago
- A very simple open source implementation of Google's Project Naptime☆173Updated 7 months ago
- Testability Pattern Catalogs for SAST☆31Updated 8 months ago
- Proof of concept code for Datadog Security Labs referenced exploits.☆447Updated 2 months ago
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆280Updated 2 months ago
- We present MAPTA, a multi-agent system for autonomous web application security assessment that combines large language model orchestratio…☆75Updated 2 months ago