Static Value-Flow Analysis Framework for Source Code
-
Updated
Nov 5, 2024 - C++
Static Value-Flow Analysis Framework for Source Code
ImportSpy is a lightweight Python library that gives developers proactive control over how their code is used when imported by other modules.
A GitHub Security Lab initiative, providing an in-repo learning experience, where learners secure intentionally vulnerable code.
Github action to run PyCQA's bandit security linter.
Contexi let you interact with entire codebase or data with context using a local LLM on your system.
Official documentation for Gitsecure
Django application that performs SAST and Malware Analysis for Android APKs
CodeScan: A Bash script for identifying potential security vulnerabilities in source code. Scan and find common patterns associated with risks like remote code execution. Get a detailed report on potential issues. Enhance your code security.
🎯 Server Side Template Injection Payloads
🎯 CSV Injection Payloads
The purpose of this document is to outline the security risks and vulnerabilities that may arise when implementing ChatGPT in web applications and to provide best practices for mitigating these risks.
This repository contains reflections on key practices in software development, focusing on ensuring functionality and security, interpreting user needs, and effective software design. The reflections emphasize the importance of rigorous testing, secure coding practices, user engagement, and thoughtful software architecture. Each project documented
Various scripts I wrote and thought could help others too
Text and Static Analysis of Java's Common Vulnerabilities and Exposures.
Monitor your code for exposed API keys, tokens, credentials, and high-risk security IaC misconfigurations
My clone repository of the GitHub Security Lab initiative, providing an in-repo learning experience, where learners secure intentionally vulnerable code.
ESLint backbone repository for workshop
A GitHub Security Lab initiative, providing an in-repo learning experience, where learners secure intentionally vulnerable code.
Complete DevOps CI/CD project with Documented Walkthrough
Sonarqube community with postgreSQL database on docker
Add a description, image, and links to the code-security topic page so that developers can more easily learn about it.
To associate your repository with the code-security topic, visit your repo's landing page and select "manage topics."