Highlights
- Pro
🕸️ Code Audit/Fuzz/AI/Auto
A collection of my weggli patterns to facilitate vulnerability research.
weggli is a fast and robust semantic search tool for C and C++ codebases. It is designed to help security researchers identify interesting functionality in large codebases.
Beautiful and understandable static analysis tool for PHP
Application Fuzzing: Tools, Techniques, and Best Practices
Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities
Project page for "The Fuzzing Book"
CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
A pure-python fully automated and unattended fuzzing framework.
"chanzi" is a simple and user-friendly JAVA SAST tool that utilizes taint analysis technology, includes built-in common vulnerability rules, supports decompile, custom rule, and is compatible with …
Event Driven Orchestration & Scheduling Platform for Mission Critical Applications
A tool for effective testing the binding layer of scripting languages
AI-powered reverse engineering assistant that bridges IDA Pro with language models through MCP.
Invisible Backdoor Attack with Sample-Specific Triggers
A toolkit for making real world machine learning and data analysis applications in C++
🚀🚀 「大模型」2小时完全从0训练26M的小参数GPT!🌏 Train a 26M-parameter GPT from scratch in just 2h!
A Model for Natural Language Attack on Text Classification and Inference
🐸💬 - a deep learning toolkit for Text-to-Speech, battle-tested in research and production