Skip to content
@trailofbits

Trail of Bits

More code: binary lifters @lifting-bits, blockchain @crytic, forks @trail-of-forks
The Trail of Bits logo

Since 2012, Trail of Bits has helped secure some of the world's most targeted organizations and devices.

We combine high-end security research with a real-world attacker mentality to reduce risk and fortify code.

Some of our work:


Pinned Loading

  1. publications publications Public

    Publications from Trail of Bits

    Python 1.5k 185

  2. algo algo Public

    Set up a personal VPN in the cloud

    Jinja 29.1k 2.3k

  3. fickling fickling Public

    A Python pickling decompiler and static analyzer

    Python 445 52

  4. vscode-weaudit vscode-weaudit Public

    Create code bookmarks and code highlights with a click.

    TypeScript 185 17

  5. semgrep-rules semgrep-rules Public

    Semgrep queries developed by Trail of Bits.

    Go 372 38

  6. codeql-queries codeql-queries Public

    CodeQL queries developed by Trail of Bits

    CodeQL 82 4

Repositories

Showing 10 of 202 repositories
  • publications Public

    Publications from Trail of Bits

    trailofbits/publications’s past year of commit activity
    Python 1,503 CC-BY-SA-4.0 185 4 2 Updated Jan 8, 2025
  • vast Public

    VAST is an experimental compiler pipeline designed for program analysis of C and C++. It provides a tower of IRs as MLIR dialects to choose the best fit representations for a program analysis or further program abstraction.

    trailofbits/vast’s past year of commit activity
    C++ 403 Apache-2.0 25 162 (20 issues need help) 6 Updated Jan 8, 2025
  • instafix-llvm Public Forked from llvm/llvm-project

    LLVM fork for INSTAFIX

    trailofbits/instafix-llvm’s past year of commit activity
    LLVM 0 12,602 0 9 Updated Jan 8, 2025
  • dylint Public

    Run Rust lints from dynamic libraries

    trailofbits/dylint’s past year of commit activity
    Rust 417 Apache-2.0 23 23 (1 issue needs help) 2 Updated Jan 8, 2025
  • multiplier Public

    Code auditing productivity multiplier.

    trailofbits/multiplier’s past year of commit activity
    C++ 444 Apache-2.0 27 115 (34 issues need help) 3 Updated Jan 7, 2025
  • cargo-unmaintained Public

    Find unmaintained packages in Rust projects

    trailofbits/cargo-unmaintained’s past year of commit activity
    Rust 67 AGPL-3.0 2 5 0 Updated Jan 7, 2025
  • build-wrap Public

    Help protect against malicious build scripts

    trailofbits/build-wrap’s past year of commit activity
    Rust 8 AGPL-3.0 3 0 1 Updated Jan 6, 2025
  • pip-plugin-pep740 Public

    An implementation of a pip plugin that verifies PEP-740 attestations before installing a package, and aborts the installation if verification fails.

    trailofbits/pip-plugin-pep740’s past year of commit activity
    Python 0 Apache-2.0 0 1 0 Updated Jan 6, 2025
  • cookiecutter-python Public

    A cookiecutter template for a best-practices Python project

    trailofbits/cookiecutter-python’s past year of commit activity
    Python 13 Apache-2.0 5 0 0 Updated Jan 6, 2025
  • windows-ctl Public

    Rust libraries and utilities for parsing Windows Certificate Trust Lists

    trailofbits/windows-ctl’s past year of commit activity
    Rust 8 Apache-2.0 2 0 0 Updated Jan 6, 2025