PhpstanPHP Static Analysis Tool - discover bugs in your code without running it!
Stars: ✭ 10,534 (+32818.75%)
Bytecode ViewerA Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)
Stars: ✭ 12,606 (+39293.75%)
swap-detectorA library for detecting swapped arguments in function calls, and a Clang Static Analyzer plugin used to demonstrate the library.
Stars: ✭ 19 (-40.62%)
mobsfscanmobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and Objective C Code. mobsfscan uses MobSF static analysis rules and is powered by semgrep and libsast pattern matcher.
Stars: ✭ 148 (+362.5%)
Sast ScanFully open-source SAST scanner supporting a range of languages and frameworks. Integrates with major CI pipelines and IDE such as Azure DevOps, Google CloudBuild, VS Code and Visual Studio. No server required!
Stars: ✭ 104 (+225%)
cppcheck-configsConfiguration files that allow cppcheck to provide better static analysis results
Stars: ✭ 15 (-53.12%)
Php ParserA PHP parser written in PHP
Stars: ✭ 15,101 (+47090.63%)
freki🐺 Malware analysis platform
Stars: ✭ 327 (+921.88%)
CrabCoRnucopia of ABstractions: a library for building abstract interpretation-based analyses
Stars: ✭ 102 (+218.75%)
crusherNo description or website provided.
Stars: ✭ 21 (-34.37%)
sonar-scalaA free and open-source SonarQube plugin for static code analysis of Scala projects.
Stars: ✭ 113 (+253.13%)
MalScanA Simple PE File Heuristics Scanners
Stars: ✭ 41 (+28.13%)
IkosStatic analyzer for C/C++ based on the theory of Abstract Interpretation.
Stars: ✭ 1,368 (+4175%)
Codeql GoThe CodeQL extractor and libraries for Go.
Stars: ✭ 224 (+600%)
static file analysisAnalysis of file (doc, pdf, exe, ...) in deep (emmbedded file(s)) with clamscan and yara rules
Stars: ✭ 34 (+6.25%)
SquealerTelling tales on you for leaking secrets!
Stars: ✭ 97 (+203.13%)
UnimportA linter, formatter for finding and removing unused import statements.
Stars: ✭ 96 (+200%)
PhpmndPHP Magic Number Detector
Stars: ✭ 431 (+1246.88%)
infrared✨🚀 Blazing fast, inferred static type checker for JavaScript.
Stars: ✭ 46 (+43.75%)
D ScannerSwiss-army knife for D source code
Stars: ✭ 221 (+590.63%)
illuaminateVery WIP static analysis for Lua
Stars: ✭ 21 (-34.37%)
AmdhAndroid Mobile Device Hardening
Stars: ✭ 95 (+196.88%)
ethereum-dasmAn ethereum evm bytecode disassembler and static/dynamic analysis tool
Stars: ✭ 121 (+278.13%)
flextoolC++ compile-time programming (serialization, reflection, code modification, enum to string, better enum, enum to json, extend or parse language, etc.)
Stars: ✭ 32 (+0%)
jayhornStatic checker for Java
Stars: ✭ 54 (+68.75%)
static-code-analysis-pluginA plugin to simplify Static Code Analysis on Gradle. Not restricted to, but specially useful, in Android projects, by making sure all analysis can access the SDK classes.
Stars: ✭ 36 (+12.5%)
TfsecSecurity scanner for your Terraform code
Stars: ✭ 3,622 (+11218.75%)
pyc2bytecodeA Python Bytecode Disassembler helping reverse engineers in dissecting Python binaries by disassembling and analyzing the compiled python byte-code(.pyc) files across all python versions (including Python 3.10.*)
Stars: ✭ 70 (+118.75%)
Sea DsaA new context, field, and array-sensitive heap analysis for LLVM bitcode based on DSA.
Stars: ✭ 90 (+181.25%)
kleverRead-only mirror of the Klever Git repository
Stars: ✭ 18 (-43.75%)
SixtyPicalA 6502-oriented low-level programming language supporting advanced static analysis
Stars: ✭ 25 (-21.87%)
malossTowards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages
Stars: ✭ 46 (+43.75%)
BoltBolt is a language with in-built data-race freedom!
Stars: ✭ 215 (+571.88%)
clair-cicdMaking CoreOS' Clair easily work in CI/CD pipelines
Stars: ✭ 27 (-15.62%)
CodecheckerCodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy
Stars: ✭ 1,209 (+3678.13%)
BEFA-LibraryHigh-level library for executable binary file analysis
Stars: ✭ 14 (-56.25%)
phpstanPHP Static Analysis in Github Actions.
Stars: ✭ 41 (+28.13%)
JAWJAW: A Graph-based Security Analysis Framework for JavaScript and Client-side CSRF
Stars: ✭ 26 (-18.75%)
Php codesnifferPHP_CodeSniffer is a set of two PHP scripts; the main phpcs script that tokenizes PHP, JavaScript and CSS files to detect violations of a defined coding standard, and a second phpcbf script to automatically correct coding standard violations. PHP_CodeSniffer is an essential development tool that ensures your code remains clean and consistent.
Stars: ✭ 9,004 (+28037.5%)
alpine-shellcheckDocker image for Alpine Linux with latest ShellCheck, a static analysis tool for shell scripts.
Stars: ✭ 12 (-62.5%)
clamStatic Analyzer for LLVM bitcode based on Abstract Interpretation
Stars: ✭ 180 (+462.5%)
RadonVarious code metrics for Python code
Stars: ✭ 1,193 (+3628.13%)
aparoidStatic and dynamic Android application security analysis
Stars: ✭ 62 (+93.75%)
Kube LinterKubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best practices.
Stars: ✭ 1,177 (+3578.13%)
OCCAMOCCAM: Object Culling and Concretization for Assurance Maximization
Stars: ✭ 20 (-37.5%)
bismonpersistent monitor (for static source code analysis, GCC based)
Stars: ✭ 45 (+40.63%)
code-reviewAutomated static analysis & linting bot for Mozilla repositories
Stars: ✭ 51 (+59.38%)
PsalmA static analysis tool for finding errors in PHP applications
Stars: ✭ 4,523 (+14034.38%)