
PurpleLlama
Set of tools to assess and improve LLM security.

Set of tools to assess and improve LLM security.

Agentic Framework for Synthesizing CodeQL Queries

Curated collection of LLVM security resources covering binary lifting, code obfuscation, static analysis, symbolic execution, sanitizers, and…

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

Apache Syncope: User self-service privilege escalation

awslabs/sockeye Code injection via unsafe YAML loading CVE-2021-43811

List of mixed boolean-arithmetic resources

PowerShell Obfuscation Detection Framework

Payload generator and proof-of-concept exploit for CVE-2018-12533 (Richfaces deserialization/EL injection) with Docker-based vulnerable environment…

This repository serves as the public reference for CVE-2024-40445 and CVE-2024-40446. Both vulnerabilities impact MimeTeX, an open-source software…

Educational presentation analyzing CVE-2021-21193, a use-after-free vulnerability in Google Chrome's Blink engine, including exploitation details and…

An Evaluation Agent for Detecting Misinformation and Knowledge Poisoning in Retrieval-Augmented Generation Systems.

Curated directory of static analysis (SAST) tools and linters for programming languages, configs, build tools, and CI, focused on improving code…

The community's most comprehensive, continuously-updated index of research on Large Language Models for software vulnerability detection — papers…

A comprehensive browser extension (.xpi) malware scanner which checks for many common malware tricks like:, credential-stealers obfuscation tactics,…

Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types

NFStream: a Flexible Network Data Analysis Framework.