Skip to content
@trailofbits

Trail of Bits

More code: binary lifters @lifting-bits, blockchain @crytic, forks @trail-of-forks
The Trail of Bits logo

Since 2012, Trail of Bits has helped secure some of the world's most targeted organizations and devices.

We combine high-end security research with a real-world attacker mentality to reduce risk and fortify code.

Some of our work:


Pinned Loading

  1. publications publications Public

    Publications from Trail of Bits

    Python 1.6k 189

  2. algo algo Public

    Set up a personal VPN in the cloud

    Jinja 29.3k 2.3k

  3. fickling fickling Public

    A Python pickling decompiler and static analyzer

    Python 492 53

  4. vscode-weaudit vscode-weaudit Public

    Create code bookmarks and code highlights with a click.

    TypeScript 196 19

  5. semgrep-rules semgrep-rules Public

    Semgrep queries developed by Trail of Bits.

    Go 397 41

  6. codeql-queries codeql-queries Public

    CodeQL queries developed by Trail of Bits

    CodeQL 96 4

Repositories

Showing 10 of 212 repositories
  • test-fuzz Public

    To make fuzzing Rust easy

    trailofbits/test-fuzz’s past year of commit activity
    Rust 176 AGPL-3.0 24 13 5 Updated Apr 22, 2025
  • build-wrap Public

    Help protect against malicious build scripts

    trailofbits/build-wrap’s past year of commit activity
    Rust 13 AGPL-3.0 3 1 0 Updated Apr 21, 2025
  • cargo-line-test Public

    Run tests by the lines they exercise

    trailofbits/cargo-line-test’s past year of commit activity
    Rust 6 3 2 0 Updated Apr 21, 2025
  • check-up-to-dateness Public

    Check whether a merge group PR is up to date relative to its base branch

    trailofbits/check-up-to-dateness’s past year of commit activity
    Shell 0 0 0 0 Updated Apr 21, 2025
  • pypi-attestations Public

    A library to convert between Sigstore Bundles and PEP 740 Attestation objects

    trailofbits/pypi-attestations’s past year of commit activity
    Python 7 Apache-2.0 4 5 0 Updated Apr 21, 2025
  • cargo-unmaintained Public

    Find unmaintained packages in Rust projects

    trailofbits/cargo-unmaintained’s past year of commit activity
    Rust 74 AGPL-3.0 11 7 1 Updated Apr 21, 2025
  • osquery Public Forked from osquery/osquery

    SQL powered operating system instrumentation, monitoring, and analytics.

    trailofbits/osquery’s past year of commit activity
    C++ 38 2,602 0 2 Updated Apr 21, 2025
  • anchor-coverage Public

    A wrapper around `anchor test` for computing test coverage

    trailofbits/anchor-coverage’s past year of commit activity
    Rust 2 AGPL-3.0 1 2 2 Updated Apr 21, 2025
  • sigstore-rekor-types Public

    Python models for Rekor's API types

    trailofbits/sigstore-rekor-types’s past year of commit activity
    Python 6 Apache-2.0 1 0 0 Updated Apr 21, 2025
  • necessist Public

    A mutation-based tool for finding bugs in tests

    trailofbits/necessist’s past year of commit activity
    Rust 116 AGPL-3.0 14 18 2 Updated Apr 21, 2025