xbow-engineering / validation-benchmarks
XBOW Validation Benchmarks
☆71Updated 5 months ago
Alternatives and similar repositories for validation-benchmarks:
Users that are interested in validation-benchmarks are comparing it to the libraries listed below
- Manager of third-party sources of Semgrep rules 🗂☆78Updated 7 months ago
- ☆180Updated 3 months ago
- ☆83Updated 8 months ago
- ☆115Updated last year
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆44Updated last year
- Common Corpus is used to build coverage-minimized corpus data sets for fuzzing.☆25Updated last year
- future-proof vulnerability detection benchmark, based on CVEs in open-source repos☆46Updated last week
- ☆49Updated 4 years ago
- A research project to add some brrrrrr to Burp☆127Updated last week
- A coverage-guided REST API fuzzer developed on top of LibAFL☆110Updated this week
- 🐛 UCLA ACM Cyber's Fuzzing Lab☆76Updated last month
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆132Updated last year
- Resources for Browser Security Research☆37Updated 2 years ago
- using ML models for red teaming☆42Updated last year
- Atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.☆62Updated 3 weeks ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆101Updated 3 weeks ago
- A structure-aware HTTP fuzzing library☆210Updated 2 months ago
- Testability Pattern Catalogs for SAST☆29Updated this week
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆37Updated 2 months ago
- Automatically fuzz Rust projects from scratch☆55Updated 9 months ago
- PP-finder Help you find gadget for prototype pollution exploitation☆151Updated 6 months ago
- ChainReactor is a research project that leverages AI planning to discover exploitation chains for privilege escalation on Unix systems. T…☆43Updated 3 months ago
- Contains all the components necessary to run a DC finals (attack-defense CTF) game from OOO.☆54Updated 3 years ago
- ☆32Updated 2 years ago
- CTF write-ups☆82Updated 2 months ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- An extension to use Semgrep inside Burp Suite.☆88Updated last year
- Awesome MXSS ??☆47Updated 4 months ago
- Grammar-based HTTP/1 fuzzer with mutation ability☆246Updated 3 months ago
- A LLM explicitly designed for getting hacked☆136Updated last year