瀏覽
正在顯示 20 個,共 56 個 components
Test cryptographic implementations for timing leaks with dudect-style workflows, leakage hypotheses, and reproducible me...
Design high-value fuzzing dictionaries for structured inputs, parsers, protocols, file formats, and smart contract ABI s...
Build libFuzzer harnesses for C/C++ libraries, configure sanitizers and corpora, and turn crashes into minimized reprodu...
Scans Algorand smart contracts for 11 common vulnerabilities including rekeying attacks, unchecked transaction fees, mis...
Scans Cairo/StarkNet smart contracts for 6 critical vulnerabilities including felt252 arithmetic overflow, L1-L2 messagi...
Guides through Trail of Bits' 5-step secure development workflow. Runs Slither scans, checks special features (upgradeab...
Scans TON (The Open Network) smart contracts for 3 critical vulnerabilities including integer-as-boolean misuse, fake Je...
Prepares codebases for security review using Trail of Bits' checklist. Helps set review goals, runs static analysis tool...
Systematic code maturity assessment using Trail of Bits' 9-category framework. Analyzes codebase for arithmetic safety,...
Scans Cosmos SDK blockchain modules and CosmWasm contracts for consensus-critical vulnerabilities — chain halts, fund lo...
Smart contract development advisor based on Trail of Bits' best practices. Analyzes codebase to generate documentation/s...
Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ow...
Scans Substrate/Polkadot pallets for 7 critical vulnerabilities including arithmetic overflow, panic DoS, incorrect weig...
Token integration and implementation analyzer based on Trail of Bits' token integration checklist. Analyzes token implem...
Red Hat-backed MCP server for Kubernetes and OpenShift cluster management, supporting kubectl, Helm, and Istio operation...
Analyzes smart contract codebases to identify state-changing entry points for security auditing. Detects externally call...
Systematically verifies suspected security bugs to eliminate false positives. Produces TRUE POSITIVE or FALSE POSITIVE v...
Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecurel...
Configures mewt or muton mutation testing campaigns — scopes targets, tunes timeouts, and optimizes long-running runs. U...
Creates custom Semgrep rules for detecting security vulnerabilities, bug patterns, and code patterns. Use when writing S...