Skip to content
@trailofbits

Trail of Bits

More code: binary lifters @lifting-bits, blockchain @crytic, forks @trail-of-forks
The Trail of Bits logo

Since 2012, Trail of Bits has helped secure some of the world's most targeted organizations and devices.

We combine high-end security research with a real-world attacker mentality to reduce risk and fortify code.

Some of our work:


Pinned Loading

  1. publications publications Public

    Publications from Trail of Bits

    Python 1.5k 185

  2. algo algo Public

    Set up a personal VPN in the cloud

    Jinja 29.2k 2.3k

  3. fickling fickling Public

    A Python pickling decompiler and static analyzer

    Python 479 53

  4. vscode-weaudit vscode-weaudit Public

    Create code bookmarks and code highlights with a click.

    TypeScript 192 19

  5. semgrep-rules semgrep-rules Public

    Semgrep queries developed by Trail of Bits.

    Go 386 39

  6. codeql-queries codeql-queries Public

    CodeQL queries developed by Trail of Bits

    CodeQL 89 4

Repositories

Showing 10 of 204 repositories
  • test-fuzz Public

    To make fuzzing Rust easy

    trailofbits/test-fuzz’s past year of commit activity
    Rust 170 AGPL-3.0 17 12 10 Updated Mar 13, 2025
  • pypi-attestations Public

    A library to convert between Sigstore Bundles and PEP 740 Attestation objects

    trailofbits/pypi-attestations’s past year of commit activity
    Python 4 Apache-2.0 4 6 3 Updated Mar 12, 2025
  • necessist Public

    A mutation-based tool for finding bugs in tests

    trailofbits/necessist’s past year of commit activity
    Rust 113 AGPL-3.0 12 17 1 Updated Mar 12, 2025
  • cargo-unmaintained Public

    Find unmaintained packages in Rust projects

    trailofbits/cargo-unmaintained’s past year of commit activity
    Rust 69 AGPL-3.0 2 7 1 Updated Mar 12, 2025
  • instafix-llvm Public Forked from llvm/llvm-project

    LLVM fork for INSTAFIX

    trailofbits/instafix-llvm’s past year of commit activity
    LLVM 0 13,173 0 11 Updated Mar 12, 2025
  • dylint Public

    Run Rust lints from dynamic libraries

    trailofbits/dylint’s past year of commit activity
    Rust 432 Apache-2.0 27 22 (1 issue needs help) 6 Updated Mar 12, 2025
  • rfc3161-client Public

    An Opinionated Python RFC3161 Client

    trailofbits/rfc3161-client’s past year of commit activity
    Rust 1 Apache-2.0 1 2 2 Updated Mar 12, 2025
  • irene3 Public
    trailofbits/irene3’s past year of commit activity
    C++ 1 AGPL-3.0 0 0 6 Updated Mar 11, 2025
  • build-wrap Public

    Help protect against malicious build scripts

    trailofbits/build-wrap’s past year of commit activity
    Rust 10 AGPL-3.0 3 1 0 Updated Mar 11, 2025
  • polyfile Public

    A pure Python cleanroom implementation of libmagic, with instrumented parsing from Kaitai struct and an interactive hex viewer

    trailofbits/polyfile’s past year of commit activity
    Python 342 Apache-2.0 21 18 (3 issues need help) 3 Updated Mar 11, 2025