There are 215 repositories under static-analysis topic.
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
ShellCheck, a static analysis tool for shell scripts
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The focus is on tools which improve code quality.
A tool to automatically fix PHP Coding Standards issues
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
Defund the Police.
Useful CMake Examples
The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWASP Mobile Security Weakness Enumeration (MASWE) weaknesses, which are in alignment with the OWASP MASVS.
PHP_CodeSniffer tokenizes PHP files and detects violations of a defined set of coding standards.
Program for determining types of files for Windows, Linux and MacOS.
🐶 Automated code review tool integrated with any code analysis tools regardless of programming language
Checkstyle is a development tool to help programmers write Java code that adheres to a coding standard. By default it supports the Google Java Style Guide and Sun Code Conventions, but is highly configurable. It can be invoked with an ANT task and a command line program.
A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑
Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
CLI tool and library for generating a Software Bill of Materials from container images and filesystems
A static analysis security vulnerability scanner for Ruby on Rails applications
Performant type-checking for python.
Tfsec is now part of Trivy
Visualize call graph of a Go program using Graphviz