
MalEval
Official code for the ISSTA 2026 paper: Is "Knowing It’s Malicious" Enough? Evaluating LLMs for Fine-Grained Malware Behavior Auditing

Official code for the ISSTA 2026 paper: Is "Knowing It’s Malicious" Enough? Evaluating LLMs for Fine-Grained Malware Behavior Auditing

web2py/web2py @ e94946d

Test & Analyze the CVE-2025-55182 vulnerability within Next.js Server Actions

AST-based Python code transformation & deobfuscation framework

Security-focused static analysis for the Phoenix Framework


Automated static code analysis framework integrated with SonarQube for early vulnerability detection in source code by scanning Git repositories…

ReactGuard provides framework- and vulnerability-detection tooling for CVE-2025-55182 (React2Shell)

Example exploitable scenarios for CVE-2024-22243 affecting the Spring framework (open redirect & SSRF).

Cursor plugin for Hono v4 (TypeScript edge web framework). 59 LLM regressions with BAD/CORRECT pairs. Pinned to hono ^4.12.19 (>= 4.9.7 for…


Frida-based .NET Framework injector and managed method hooking toolkit for runtime tracing, native entrypoint resolution, and dynamic analysis of…


The code of VulTriage: Triple-Path Context Augmentation for LLM-Based Vulnerability Detection

Modular framework to detect and prevent dependency confusion attacks by analyzing package manifests across multiple sources and package management…

A demonstration of common XSS vulnerabilities in Django Rest Framework applications. This repository showcases intentionally vulnerable code to…