#

sast

analysis-tools-dev/static-analysis
https://static.github-zh.com/github_avatars/analysis-tools-dev?size=40

#Awesome#⚙️ A curated list of static analysis (SAST) tools and linters for all programming languages, config files, build tools, and more. The focus is on tools which improve code quality.

Rust 14.16 k
1 天前
semgrep/semgrep
https://static.github-zh.com/github_avatars/semgrep?size=40

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

OCaml 13.08 k
2 天前
tenable/terrascan
https://static.github-zh.com/github_avatars/tenable?size=40
Go 5.18 k
3 个月前
https://static.github-zh.com/github_avatars/ajinabraham?size=40
CSS 2.51 k
8 天前
https://static.github-zh.com/github_avatars/ASTTeam?size=40
1.69 k
2 年前
https://static.github-zh.com/github_avatars/controlplaneio?size=40
Go 1.4 k
6 天前
ZupIT/horusec
https://static.github-zh.com/github_avatars/ZupIT?size=40
Go 1.27 k
5 天前
https://static.github-zh.com/github_avatars/momosecurity?size=40

IDEA静态代码安全审计及漏洞一键修复插件

Java 1.04 k
4 年前
https://static.github-zh.com/github_avatars/ShiftLeftSecurity?size=40

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and Git friendly.

Python 854
2 年前
https://static.github-zh.com/github_avatars/Cyber-Buddy?size=40

APKHunt is a comprehensive static code analysis tool for Android apps that is based on the OWASP MASVS framework. Although APKHunt is intended primarily for mobile app developers and security testers,...

Go 843
9 个月前
https://static.github-zh.com/github_avatars/MobSF?size=40

#安卓#mobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and Objective C Code. mobsfscan uses MobSF static analysis r...

Python 705
9 个月前
https://static.github-zh.com/github_avatars/BADBADBADBOY?size=40

基于pytorch的ocr算法库,包括 psenet, pan, dbnet, sast , crnn

C++ 681
4 年前
https://static.github-zh.com/github_avatars/insidersec?size=40

#安卓#Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilities right in the source code, focused on a agile and easy to im...

Go 549
4 年前
https://static.github-zh.com/github_avatars/awslabs?size=40

ASH is an extensible, open source SAST, SCA, and IaC security scanner orchestration engine.

Python 501
11 天前
https://static.github-zh.com/github_avatars/DeepSourceCorp?size=40

Globstar is a fast, feature-rich, and open-source static analysis toolkit for writing and running code checkers. Based on tree-sitter.

Go 459
4 个月前
https://static.github-zh.com/github_avatars/Chanzi-keji?size=40

"chanzi" is a simple and user-friendly JAVA SAST tool that utilizes taint analysis technology, includes built-in common vulnerability rules, supports decompile, custom rule, and is compatible with th...

441
7 天前
https://static.github-zh.com/github_avatars/alipay?size=40

xAST评价体系,让安全工具不再“黑盒”. The xAST evaluation benchmark makes security tools no longer a "black box".

Java 432
18 天前
loading...
Website
Wikipedia