serianalyzer

Bytecode analyzer

Analyzes Java bytecode to identify potential deserialization vulnerabilities.

A static byte code analyzer for Java deserialization gadget research

GitHub

241 stars
7 watching
35 forks
Language: Java
last commit: over 7 years ago

Related projects:

Repository Description Stars
storyyeller/krakatau A toolset for analyzing and manipulating Java bytecode 1,992
bishopfox/gadgetprobe Tools for analyzing and exploiting vulnerabilities in Java deserialization vulnerabilities 585
bkoelman/csharpguidelinesanalyzer A tool that analyzes C# code against predefined coding guidelines and reports diagnostics 145
mumuki/mulang Analyzes source code structure and syntax to detect potential issues and errors 124
sonarsource/sonar-java Analyzes Java code quality and security issues to help developers write cleaner code 1,134
jackofmosttrades/gadgetinspector Analyzes Java applications for potential deserialization gadget chains to help identify vulnerabilities and prioritize remediation. 996
tushartushar/designitejava A tool for assessing the quality and structure of Java code by detecting design and implementation smells and computing various object-oriented metrics. 173
mutabilitydetector/mutabilitydetector Analyzes Java classes to determine if instances of a class are immutable 240
knight0x07/pyc2bytecode A tool to disassemble and analyze compiled Python bytecode files (pyc) from various Python versions. 133
migamake/homplexity A tool that analyzes Haskell code to measure its complexity and quality 61
refactorfirst/refactorfirst Identifies highly coupled classes and class cycles in Java codebases to prioritize refactoring efforts. 457
netspi/javaserialkiller A Burp extension that enables Java Deserialization Attacks using a payload generator tool 208
ilyaumanets/improve_your_code A tool that analyzes Ruby code for common design flaws and suggests improvements. 0
uniba-dsg/bpellint Analyzes BPEL files for compliance with 71 static analysis rules from the BPEL 2.0 specification. 5
wala/wala A toolset for static analysis of Java and JavaScript code. 763