
semgrep
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
code-analysisdevsecopseducation+4
16.3k

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

Utilize Tai-e to identify the Log4shell (a.k.a. CVE-2021-44228) Vulnerability

CVE-2026-39259

The Secure Coding Practices Quick-reference Guide from OWASP

SyncShield - Browser Extension to Detect Unsafe Rsync Commands (CVE-2018-5764)

Easy setup of static analysis tools for Android and Java projects.

Sourcetrail - free and open-source interactive source explorer

Checklist and tools for increasing security of Apache Airflow

Static code analysis plugin for Android project. (Checkstyle, PMD)