xbow-engineering / validation-benchmarksLinks
XBOW Validation Benchmarks
☆461Updated 7 months ago
Alternatives and similar repositories for validation-benchmarks
Users that are interested in validation-benchmarks are comparing it to the libraries listed below
Sorting:
- Collection of community-driven CodeQL query, library and extension packs☆203Updated last month
- CodeQL zero to hero blog post series challenges☆163Updated 4 months ago
- Automated web vulnerability scanning with LLM agents☆443Updated 7 months ago
- Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js☆75Updated 2 years ago
- ☆558Updated 2 months ago
- Grammar-based HTTP/1 fuzzer with mutation ability☆260Updated last year
- ☆226Updated last month
- MCP for Security: A collection of Model Context Protocol servers for popular security tools like SQLMap, FFUF, NMAP, Masscan and more. In…☆539Updated 3 weeks ago
- Black box fuzzer for web applications☆437Updated 6 months ago
- A neurosymbolic framework for vulnerability detection in code☆320Updated 2 months ago
- Community reconstruction of the legacy JSON NVD Data Feeds. This project uses and redistributes data from the NVD API but is neither endo…☆202Updated this week
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆118Updated 4 months ago
- 🧠 LLMFuzzer - Fuzzing Framework for Large Language Models 🧠 LLMFuzzer is the first open-source fuzzing framework specifically designed …☆338Updated last year
- TheHulk is a dynamic analysis tool designed to detect and exploit DOM Clobbering vulnerabilities.☆90Updated 5 months ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆57Updated 2 years ago
- AI agent for autonomous cyber operations☆467Updated 2 months ago
- YuraScanner☆72Updated 11 months ago
- AutoSpear☆72Updated 2 years ago
- SAST + LLM Interprocedural Context Extractor☆176Updated 3 months ago
- A collection of Server-Side Prototype Pollution gadgets and exploits☆221Updated 11 months ago
- MCP Server for Burp☆461Updated 2 months ago
- ☆187Updated last month
- Learn AI security through a series of vulnerable LLM CTF challenges. No sign ups, no cloud fees, run everything locally on your system.☆314Updated last year
- A source code static analysis platform for AppSec enthusiasts.☆267Updated last month
- Companion repository of the "Dancer in the Dark" paper.☆20Updated last year
- The repository of VulnBot: Autonomous Penetration Testing for A Multi-Agent Collaborative Framework.☆138Updated 9 months ago
- ☆164Updated last week
- PentestAgent is a novel LLM-driven penetration testing framework to automate intelligence gathering, vulnerability analysis, and exploita…☆110Updated last month
- CTF challenges designed and implemented in machine learning applications☆199Updated 3 months ago
- YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, d…☆240Updated 2 weeks ago