katyacyfra's Stars
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
facebook/infer
A static analyzer for Java, C, C++, and Objective-C
BerriAI/litellm
Python SDK, Proxy Server (LLM Gateway) to call 100+ LLM APIs in OpenAI format - [Bedrock, Azure, OpenAI, VertexAI, Cohere, Anthropic, Sagemaker, HuggingFace, Replicate, Groq]
NVIDIA/garak
the LLM vulnerability scanner
jar-analyzer/jar-analyzer
Jar Analyzer - 一个JAR包分析工具,批量分析,SCA漏洞分析,方法调用关系搜索,字符串搜索,Spring组件分析,信息泄露检查,CFG程序分析,JVM栈帧分析,进阶表达式搜索,字节码指令级的动态调试分析,反编译JAR包一键导出,一键提取序列化数据恶意代码,一键分析BCEL字节码
hisxo/ReconAIzer
A Burp Suite extension to add OpenAI (GPT) on Burp and help you with your Bug Bounty recon to discover endpoints, params, URLs, subdomains and more!
travitch/whole-program-llvm
A wrapper script to build whole-program LLVM bitcode files
githubnext/testpilot
Test generation using large language models
ucsb-seclab/karonte
Karonte is a static analysis tool to detect multi-binary vulnerabilities in embedded firmware
isstac/kelinci
AFL-based fuzzing for Java
soot-oss/heros
IFDS/IDE Solver for Soot and other frameworks
Orange-Cyberdefense/grepmarx
A source code static analysis platform for AppSec enthusiasts.
secureIT-project/CVEfixes
CVEfixes: Automated Collection of Vulnerabilities and Their Fixes from Open-Source Software
CGCL-codes/SCVDT
Source Code Vulnerability Detection Tools(SCVDT)provides a vulnerable code database, vulnerability detection service for Java and C/C++ programs, and other security service.
tuhh-softsec/vul4j
Vul4J: A Dataset of Reproducible Java Vulnerabilities
Vul-LMGNN/vul-LMGGNN
Code for the paper - Source Code Vulnerability Detection: Combining Code Language Models and Code Property Graph
program-analysis-team/cooddy
Source code (C,C++,Java) static analysis tool
secure-software-engineering/PointerBench
A points-to and alias analysis benchmark suite
cdaller/security_taint_propagation
Java taint propagation for java. Define tainted sources, sanitizer methods and sinks via aspects.
niklasrisse/LimitsOfML4Vuln
s3c2/vfcfinder
VFCFinder: Searching for the Missing Vulnerability Fixing Commits
UnitTestBot/jacodb
fast and effective way to access and analyze java bytecode
UnitTestBot/usvm
Universal Symbolic Virtual Machine
BBerabi/deepcode_ai_fix
CheckmarxDev/JavaVulnerableLab
lab
sysrel/PROMPT
PROMPT: API model guided symbolic execution for component-level analysis
stschott/jess
CSworkspace/RepresentThemALL
A pre-trained language model for bug reports~
lahiri-phdworks/KLEE-KQueryParser
A KQuery parser for KLEE KQuery. Tool for KLEE symbolic execution enthusiasts.
UnitTestBot/byteflow