Hacker News
- Semgrep: Lightweight static analysis for many languages https://github.com/returntocorp/semgrep 28 comments
- Like Grep but for Code https://github.com/returntocorp/semgrep 2 comments
Lobsters
Linking pages
- GitHub - ajinabraham/nodejsscan: nodejsscan is a static security code scanner for Node.js applications. https://github.com/ajinabraham/nodejsscan 10 comments
- Semgrep for Cloud Security | Marco Lancini's Blog https://www.marcolancini.it/2020/blog-semgrep-for-cloud-security/ 5 comments
- GitHub - life4/awesome-python-code-formatters: A curated list of awesome Python code formatters https://github.com/life4/awesome-python-code-formatters 4 comments
- GitHub - AsherDLL/PCDump-bn: This Binary Ninja plugin is written in Python 3 and it aims to assist with reverse engineering and vulnerability research. It dumps the Pseudo C representation of a binary, generated by Binja's decompiler, into a specified folder. https://github.com/AsherDLL/PCDump-bn 3 comments
- Advancing Rust Support in Semgrep – Kudelski Security Research https://research.kudelskisecurity.com/2021/04/14/advancing-rust-support-in-semgrep/ 1 comment
- GitHub - untitaker/spacemod: Search-and-replace with parenthesis matching https://github.com/untitaker/spacemod 1 comment
- GitHub - akabe1/akabe1-semgrep-rules: My collection of Semgrep rules for vulnerability detection on source code (swift, java) https://github.com/akabe1/akabe1-semgrep-rules 1 comment
- GitHub - mschwager/route-detect: Find authentication (authn) and authorization (authz) security bugs in web application routes. https://github.com/mschwager/route-detect 1 comment
- A Guide to Improving Security Through Infrastructure-as-Code – NCC Group Research https://research.nccgroup.com/2022/09/19/a-guide-to-improving-security-through-infrastructure-as-code/ 0 comments
- Bringing Security along on the CI/CD journey - Jacob Kaplan-Moss https://jacobian.org/2021/jan/11/security-ci-cd/ 0 comments
- Interesting Things #2 — Can you trust floating-point arithmetic on Apple Silicon? https://interestingthings.bengtan.com/p/issue-2 0 comments
- chair6.net – Programmatic Terraform config manipulation, Semgrep's autofix, and an example of OSS contribution https://chair6.net/programmatic-terraform-config-manipulation-semgreps-autofix-and-an-example-of-oss-contribution.html 0 comments
- Console #100 -- Lapce, Semgrep, and Meerschaum https://console.substack.com/p/console-100 0 comments
- A Practical Introduction to Semgrep | Bernardo de Araujo https://bernardoamc.com/semgrep-introduction/ 0 comments
- GitHub - oxsecurity/megalinter: 🦙 Mega-Linter analyzes 50 languages, 22 formats, 21 tooling formats, excessive copy-pastes, spelling mistakes and security issues in your repository sources with a GitHub Action, other CI tools or locally. https://github.com/oxsecurity/megalinter 0 comments
- Semgrep 👀 - by Stephen Whitworth - High Growth Engineering https://highgrowthengineering.substack.com/p/semgrep- 0 comments
- GitHub - Ostorlab/ostorlab: Ostorlab is a security scanning orchestrator for the modern age. https://github.com/Ostorlab/ostorlab 0 comments
- MegaLinter by OX Security https://megalinter.io/latest/ 0 comments
- GitHub - vihar/awesome-oss-saas: A collection of open-source saas tools https://github.com/vihar/awesome-oss-saas 0 comments
- GitHub - R9295/cpython: The Python programming language https://github.com/R9295/cpython 0 comments