All Projects → Find Sec Bugs → Similar Projects or Alternatives

4928 Open source projects that are alternatives of or similar to Find Sec Bugs

Spotbugs
SpotBugs is FindBugs' successor. A tool for static analysis to look for bugs in Java code.
Stars: ✭ 2,569 (+46.97%)
static-code-analysis-plugin
A plugin to simplify Static Code Analysis on Gradle. Not restricted to, but specially useful, in Android projects, by making sure all analysis can access the SDK classes.
Stars: ✭ 36 (-97.94%)
Larastan
⚗️ Adds code analysis to Laravel improving developer productivity and code quality.
Stars: ✭ 3,554 (+103.32%)
aura
Python source code auditing and static analysis on a large scale
Stars: ✭ 101 (-94.22%)
Sbt Dependency Check
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs). 🌈
Stars: ✭ 187 (-89.3%)
Mutual labels:  static-analysis, security-audit, owasp
phan-taint-check-plugin
Github mirror of "mediawiki/tools/phan/SecurityCheckPlugin" - our actual code is hosted with Gerrit (please see https://www.mediawiki.org/wiki/Developer_access for contributing)
Stars: ✭ 21 (-98.8%)
Mobile Security Framework Mobsf
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
Stars: ✭ 10,212 (+484.21%)
Mutual labels:  static-analysis, owasp, cwe
Vulny Code Static Analysis
Python script to detect vulnerabilities inside PHP source code using static analysis, based on regex
Stars: ✭ 207 (-88.16%)
Mutual labels:  static-analysis, hacktoberfest
Revive
🔥 ~6x faster, stricter, configurable, extensible, and beautiful drop-in replacement for golint
Stars: ✭ 3,139 (+79.58%)
Mutual labels:  static-analysis, hacktoberfest
cwe-tool
A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.
Stars: ✭ 40 (-97.71%)
Mutual labels:  owasp, cwe
cwe-sdk-javascript
A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC
Stars: ✭ 18 (-98.97%)
Mutual labels:  owasp, cwe
Codeclimate
Code Climate CLI
Stars: ✭ 2,273 (+30.03%)
Mutual labels:  static-analysis, hacktoberfest
Checkov
Prevent cloud misconfigurations during build-time for Terraform, Cloudformation, Kubernetes, Serverless framework and other infrastructure-as-code-languages with Checkov by Bridgecrew.
Stars: ✭ 3,572 (+104.35%)
Mutual labels:  static-analysis, hacktoberfest
Insider
Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilities right in the source code, focused on a agile and easy to implement software inside your DevOps pipeline. Support the following technologies: Java (Maven and Android), Kotlin (Android), Swift (iOS), .NET Full Framework, C#, and Javascript (Node.js).
Stars: ✭ 216 (-87.64%)
Mutual labels:  static-analysis, owasp
Forbidden Apis
Policeman's Forbidden API Checker
Stars: ✭ 216 (-87.64%)
Mutual labels:  static-analysis, code-analysis
gotcha
Go Taint CHeck Analyser
Stars: ✭ 40 (-97.71%)
Mutual labels:  static-analysis, taint-analysis
assimilation-official
This is the official main repository for the Assimilation project
Stars: ✭ 47 (-97.31%)
Mutual labels:  security-audit, owasp
sbt-findbugs
FindBugs static analysis plugin for sbt.
Stars: ✭ 47 (-97.31%)
Mutual labels:  findbugs, static-analysis
Debt-Manager
A personal app to store people that owe you money or you owe money to. "Mo Money Mo Problems" 🎵 - The Notorious B.I.G. 😎
Stars: ✭ 22 (-98.74%)
Mutual labels:  findbugs, static-analysis
clair-cicd
Making CoreOS' Clair easily work in CI/CD pipelines
Stars: ✭ 27 (-98.46%)
Mutual labels:  security-audit, static-analysis
dependency-check-py
🔐 Shim to easily install OWASP dependency-check-cli into Python projects
Stars: ✭ 44 (-97.48%)
Mutual labels:  security-audit, owasp
Coala Bears
Bears for coala
Stars: ✭ 276 (-84.21%)
Mutual labels:  hacktoberfest, code-analysis
Credo
A static code analysis tool for the Elixir language with a focus on code consistency and teaching.
Stars: ✭ 4,144 (+137.07%)
Mutual labels:  static-analysis, code-analysis
Huskyci
Performing security tests inside your CI
Stars: ✭ 398 (-77.23%)
Mutual labels:  static-analysis, hacktoberfest
Eslint Plugin Sonarjs
SonarJS rules for ESLint
Stars: ✭ 458 (-73.8%)
Mutual labels:  static-analysis, code-analysis
Pyre Check
Performant type-checking for python.
Stars: ✭ 5,716 (+227%)
Mutual labels:  static-analysis, taint-analysis
Juice Shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
Stars: ✭ 6,270 (+258.7%)
Mutual labels:  hacktoberfest, owasp
Pdepend
PHP_Depend is an adaptation of the established Java development tool JDepend. This tool shows you the quality of your design in terms of extensibility, reusability and maintainability.
Stars: ✭ 727 (-58.41%)
Mutual labels:  hacktoberfest, code-analysis
Php Language Server
PHP Implementation of the VS Code Language Server Protocol 🆚↔🖥
Stars: ✭ 1,019 (-41.7%)
Mutual labels:  static-analysis, code-analysis
Bodyclose
Analyzer: checks whether HTTP response body is closed and a re-use of TCP connection is not blocked.
Stars: ✭ 181 (-89.65%)
Mutual labels:  static-analysis, code-analysis
Rubysonar
an advanced semantic indexer for Ruby
Stars: ✭ 175 (-89.99%)
Mutual labels:  static-analysis, code-analysis
Tfsec
Security scanner for your Terraform code
Stars: ✭ 3,622 (+107.21%)
Mutual labels:  static-analysis, hacktoberfest
Warnings Ng Plugin
Jenkins Warnings Plugin - Next Generation
Stars: ✭ 248 (-85.81%)
Mutual labels:  static-analysis, findbugs
Pyt
A Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Applications
Stars: ✭ 2,061 (+17.91%)
Mutual labels:  static-analysis, taint-analysis
PhpCodeAnalyzer
PhpCodeAnalyzer scans codebase and analyzes which non-built-in php extensions used
Stars: ✭ 91 (-94.79%)
Mutual labels:  static-analysis, code-analysis
Radon
Various code metrics for Python code
Stars: ✭ 1,193 (-31.75%)
Mutual labels:  static-analysis, code-analysis
Pest
🐞 Primitive Erlang Security Tool
Stars: ✭ 79 (-95.48%)
Mutual labels:  static-analysis, security-audit
Github Dorks
Find leaked secrets via github search
Stars: ✭ 1,332 (-23.8%)
Mutual labels:  hacktoberfest, security-audit
swap-detector
A library for detecting swapped arguments in function calls, and a Clang Static Analyzer plugin used to demonstrate the library.
Stars: ✭ 19 (-98.91%)
Mutual labels:  static-analysis, code-analysis
CIS-Ubuntu-20.04-Ansible
Ansible Role to Automate CIS v1.1.0 Ubuntu Linux 18.04 LTS, 20.04 LTS Remediation
Stars: ✭ 150 (-91.42%)
Mutual labels:  security-audit, owasp
Wotan
Pluggable TypeScript and JavaScript linter
Stars: ✭ 271 (-84.5%)
Mutual labels:  static-analysis, code-analysis
Phpmd
PHPMD is a spin-off project of PHP Depend and aims to be a PHP equivalent of the well known Java tool PMD. PHPMD can be seen as an user friendly frontend application for the raw metrics stream measured by PHP Depend.
Stars: ✭ 1,992 (+13.96%)
Mutual labels:  static-analysis, hacktoberfest
Pmd
An extensible multilanguage static code analyzer.
Stars: ✭ 3,667 (+109.78%)
Mutual labels:  static-analysis, code-analysis
Horusec
Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.
Stars: ✭ 311 (-82.21%)
Mutual labels:  static-analysis, hacktoberfest
Psalm
A static analysis tool for finding errors in PHP applications
Stars: ✭ 4,523 (+158.75%)
Mutual labels:  static-analysis, taint-analysis
Coala
coala provides a unified command-line interface for linting and fixing all your code, regardless of the programming languages you use.
Stars: ✭ 3,280 (+87.64%)
Mutual labels:  hacktoberfest, code-analysis
Security Code Scan
Vulnerability Patterns Detector for C# and VB.NET
Stars: ✭ 550 (-68.54%)
Mutual labels:  static-analysis, owasp
Zap Extensions
OWASP ZAP Add-ons
Stars: ✭ 486 (-72.2%)
Mutual labels:  hacktoberfest, owasp
Brakeman
A static analysis security vulnerability scanner for Ruby on Rails applications
Stars: ✭ 6,281 (+259.32%)
Mutual labels:  static-analysis, security-audit
Freki
🐺 Malware analysis platform
Stars: ✭ 285 (-83.7%)
Mutual labels:  static-analysis, hacktoberfest
Zaproxy
The OWASP ZAP core project
Stars: ✭ 9,078 (+419.34%)
Mutual labels:  hacktoberfest, owasp
Terraform Security Scan
Run a security scan on your terraform with the very nice https://github.com/liamg/tfsec
Stars: ✭ 64 (-96.34%)
Mutual labels:  static-analysis, hacktoberfest
Spoon
Spoon is a metaprogramming library to analyze and transform Java source code (up to Java 15). 🥄 is made with ❤️, 🍻 and ✨. It parses source files to build a well-designed AST with powerful analysis and transformation API.
Stars: ✭ 1,078 (-38.33%)
Mutual labels:  static-analysis, code-analysis
Abaplint
Standalone linter for ABAP
Stars: ✭ 111 (-93.65%)
Mutual labels:  static-analysis, hacktoberfest
Nodejsscan
nodejsscan is a static security code scanner for Node.js applications.
Stars: ✭ 1,874 (+7.21%)
Mutual labels:  static-analysis, code-analysis
Cflint
Static code analysis for CFML (a linter)
Stars: ✭ 156 (-91.08%)
Mutual labels:  static-analysis, findbugs
Securecodebox
secureCodeBox (SCB) - continuous secure delivery out of the box
Stars: ✭ 279 (-84.04%)
Mutual labels:  hacktoberfest, owasp
Pysonar2
PySonar2: an advanced semantic indexer for Python
Stars: ✭ 1,074 (-38.56%)
Mutual labels:  static-analysis, code-analysis
Phpstan Drupal
Extension for PHPStan to allow analysis of Drupal code.
Stars: ✭ 97 (-94.45%)
Mutual labels:  static-analysis, hacktoberfest
Config Lint
Command line tool to validate configuration files
Stars: ✭ 118 (-93.25%)
Mutual labels:  static-analysis, hacktoberfest
1-60 of 4928 similar projects