Secure Software Engineering Group at Paderborn University and Fraunhofer IEM
Pinned repositories
Repositories
-
phasar
A LLVM-based static analysis framework.
-
secucheck
Boomerang-based taint analysis with internal Java fluent interface for security specifications in fluentTQL implemented with MagpieBridge to support multiple IDEs.
-
-
jadx-taintdoc
Jadx extended to ease documentation of taint flows
-
COVA
COVA - A static analysis tool to compute path conditions
-
secucheck-core
Taint Analysis based on Boomerang
-
achilles-benchmark-depscanners
Achilles - Benchmark for assessing OSS-Vulnerability Scanners 59
-
tamiflex
TamiFlex facilitates static analysis of programs that use reflection and custom class loaders
-
authcheck
Analysis for access-control vulnerabilities in Java Spring Security applications.
-
Jimple-Interpreter
Soot based Jimple interpreter
-
CogniCrypt-IntelliJ
Static Code Analysis for Crypto-API misuse detection. IDE Plugin for IntelliJ and Android Studio
-
CogniCrypt-CI-Integration
This repository contains code for a Jenkins adaptor for CogniCrypt which is based on warnings-ng-plugin https://github.com/jenkinsci/warnings-ng-plugin
-
DroidBench
A micro-benchmark suite to assess the stability of taint-analysis tools for Android
-
mudarri
Source code of the Mudarri IntelliJ plugin, using rule graphs
-
sootdiff
SootDiff - Bytecode Comparison Across Different Java Compilers
-
swan
Security methods for WeAkNess detection
-
boomerang
Boomerang is a on-demand context and flow-sensitive pointer analysis for Java.
-
-
visuflow
VisuFlow - An Eclipse plugin that helps static code developers in writing static analyses on top of Soot.
-
vulnerability-of-the-day
Forked from votd/vulnerability-of-the-dayA pedagogically-curated collection of vulnerability demonstrations for undergraduate software engineering students.
-
cilrep
JVM-based representation (and manipulation) of CIL bytecode
-
PointerBench
A points-to and alias analysis benchmark suite
-
opcua-scanner
An opcua client scanning for servers in a network
-
soot-panathon
Soot Fork for the ISSTA2018 Panathon
-
cheetah
Eclipse plugin for a JIT taint analysis