
Argus
Staged static taint analysis framework for GitHub Actions workflows. Detects code injection vulnerabilities using taint-tracking and an impact…

Staged static taint analysis framework for GitHub Actions workflows. Detects code injection vulnerabilities using taint-tracking and an impact…

Select Bugs From Binary Where Pattern Like CVE-1337-Days

Static analysis of APKs with regular expressions

Writing and sharing one YARA rule daily for 100 days

This repository contains a solution for the CVE-2023-26136 vulnerability.


IoT Malware Similarity Analysis Platform

Static analyzer for PE executables with plugin-based detection of packers, compilers, suspicious imports, cryptographic constants, and ClamAV…

A curated list of Android Security materials and resources For Pentesters and Bug Hunters

Decompiled source code of zip4j library versions 1.3.2 (vulnerable) and 1.3.3 (fixed) for CVE-2018-1002202 path traversal analysis, part of the…

CodeQL query test for CVE-2023-24329, demonstrating static analysis detection of a specific vulnerability in Python's urllib.parse module.

Collection of Solidity snippets and Foundry scripts for smart contract security audits

Deep ghidra decompiler and sleigh disassembler integration for rizin

CLI tool for analyzing Go package capabilities by tracing transitive calls to privileged standard library operations, enabling supply chain risk…

Proof-of-concept exploit for CVE-2025-53367, a vulnerability in the DjVuLibre library. Demonstrates exploitation of a memory corruption bug in DjVu…

Modular Android APK security analysis framework integrating static, dynamic, and reverse engineering tools for comprehensive vulnerability assessment…

Rules Shared by the Community from 100 Days of YARA 2023 -

Generate Objective-C headers from Mach-O files.