Secure Software Engineering Group at Paderborn University and Fraunhofer IEM (secure-software-engineering)

Secure Software Engineering Group at Paderborn University and Fraunhofer IEM

secure-software-engineering

Geek Repo

Home Page:https://www.hni.uni-paderborn.de/swt/

Github PK Tool:Github PK Tool

Secure Software Engineering Group at Paderborn University and Fraunhofer IEM's repositories

FlowDroid

FlowDroid Static Data Flow Tracker

Language:JavaLicense:LGPL-2.1Stargazers:1017Issues:32Issues:445

phasar

A LLVM-based static analysis framework.

Language:C++License:NOASSERTIONStargazers:910Issues:30Issues:181

DroidBench

A micro-benchmark suite to assess the stability of taint-analysis tools for Android

tamiflex

TamiFlex facilitates static analysis of programs that use reflection and custom class loaders

COVA

COVA - A static analysis tool to compute path conditions

Language:PythonLicense:LGPL-2.1Stargazers:32Issues:8Issues:5

TypeEvalPy

A Micro-benchmarking Framework for Python Type Inference Tools

swan

Security methods for WeAkNess detection

Language:JavaLicense:BSD-3-ClauseStargazers:19Issues:8Issues:22

SootFX

A Static Code Feature Extraction Tool for Java and Android

Language:JavaLicense:LGPL-2.1Stargazers:18Issues:4Issues:0

sootdiff

SootDiff - Bytecode Comparison Across Different Java Compilers

Language:JavaLicense:MITStargazers:17Issues:6Issues:1

secucheck

Soot-based taint analysis with internal Java fluent interface for security specifications in fluentTQL implemented with MagpieBridge to support multiple IDEs.

Language:JavaLicense:MITStargazers:16Issues:11Issues:8

authcheck

Analysis for access-control vulnerabilities in Java Spring Security applications.

Language:JavaScriptLicense:MITStargazers:13Issues:8Issues:0

Jimple-Interpreter

Soot based Jimple interpreter

Language:JavaLicense:Apache-2.0Stargazers:12Issues:11Issues:0

HeaderGen

HeaderGen annotates Jupyter notebooks using static analysis. Improves PyCG's call graph analysis by supporting external libraries and flow-sensitivity.

Language:Jupyter NotebookStargazers:11Issues:3Issues:1

secucheck-core

Taint Analysis on top of Soot.

Language:JavaLicense:MITStargazers:9Issues:11Issues:1

opcua-scanner

An opcua client scanning for servers in a network

achilles-benchmark-depscanners

Achilles - Benchmark for assessing OSS-Vulnerability Scanners 59

Language:JavaLicense:LGPL-3.0Stargazers:7Issues:2Issues:2

upcy

UpCy automatically finds compatible updates for Maven dependencies.

Language:JavaLicense:Apache-2.0Stargazers:6Issues:2Issues:0

jadx-taintdoc

Jadx extended to ease documentation of taint flows

Language:JavaLicense:NOASSERTIONStargazers:4Issues:10Issues:1

SparseBoomerang

Sparse Demand-Driven Pointer Analysis

Language:JavaLicense:EPL-2.0Stargazers:4Issues:3Issues:0
Language:C++License:MITStargazers:3Issues:5Issues:0

spring-petclinic-kotlin

Vulnerable version of the Spring PetClinic application in Kotlin

Language:KotlinLicense:Apache-2.0Stargazers:2Issues:6Issues:0

cards

Component-based Assumptions and Restrictions for Dataflow Specifications

Language:JavaLicense:MITStargazers:1Issues:6Issues:0

CogniCrypt-IntelliJ

Static Code Analysis for Crypto-API misuse detection. IDE Plugin for IntelliJ and Android Studio

Language:JavaLicense:MITStargazers:1Issues:7Issues:0
Language:JavaLicense:LGPL-2.1Stargazers:1Issues:6Issues:0

SparseIDE

Sparse IDE/IFDS solver and client implementation

License:LGPL-2.1Stargazers:1Issues:0Issues:0

CogniCrypt-CI-Integration

This repository contains code for a Jenkins adaptor for CogniCrypt which is based on warnings-ng-plugin https://github.com/jenkinsci/warnings-ng-plugin

Language:JavaLicense:MITStargazers:0Issues:6Issues:7
Language:JavaStargazers:0Issues:6Issues:0

mudarri

Source code of the Mudarri IntelliJ plugin, using rule graphs

Language:JavaLicense:Apache-2.0Stargazers:0Issues:0Issues:0
Stargazers:0Issues:7Issues:0

z3

The Z3 Theorem Prover

Language:C++License:NOASSERTIONStargazers:0Issues:2Issues:0