Giter VIP home page Giter VIP logo

sast's Introduction

《深入理解SAST静态应用安全测试》

SAST在安全领域极其重要,不仅是解决漏洞的有效利器,更是基础安全之上发现漏洞的有效方法。尽管SAST有时弊病百出,比如严重依赖规则、误报漏报率太高、特定漏洞无法检测等问题。但SAST的发展从根本上推动了安全漏洞的发展,弥补了DAST的不足,促进了IAST的落地。代码审计是SAST,SAST不只是代码审计!作者:0e0w

本项目创建于2022年1月22日,最近的一次更新时间为2022年3月20日。项目会持续更新,直到海枯石烂!

01-SAST资源

一、书籍资源

二、学术论文

三、视频资源

四、优秀资源

五、英文资源

六、其他资源

02-SAST工具

一、优秀工具

二、开源工具

三、商业产品

03-SAST原理

本章节介绍SAST的实现原理设计**等内容。

一、基于正则

二、基于AST

三、基于IR/CFG

四、基于QL

五、基于......?

04-SAST开发

  • 如何开发一款优秀的SAST工具产品?

05-SAST未来

  • 一款优秀的SAST产品应该具备什么样的特性?

06-SAST参考

Stargazers

Stargazers @ASTTeam/SAST

Forkers

Forkers @ASTTeam/SAST

Stargazers over time

sast's People

Contributors

0e0w avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.