Skip to content
@trailofbits

Trail of Bits

More code: binary lifters @lifting-bits, blockchain @crytic, forks @trail-of-forks
The Trail of Bits logo

Since 2012, Trail of Bits has helped secure some of the world's most targeted organizations and devices.

We combine high-end security research with a real-world attacker mentality to reduce risk and fortify code.

Some of our work:


Pinned Loading

  1. publications Public

    Publications from Trail of Bits

    Python 1.6k 191

  2. algo Public

    Set up a personal VPN in the cloud

    Jinja 29.4k 2.3k

  3. fickling Public

    A Python pickling decompiler and static analyzer

    Python 497 55

  4. vscode-weaudit Public

    Create code bookmarks and code highlights with a click.

    TypeScript 198 19

  5. semgrep-rules Public

    Semgrep queries developed by Trail of Bits.

    Go 399 41

  6. codeql-queries Public

    CodeQL queries developed by Trail of Bits

    CodeQL 97 3

Repositories

Showing 10 of 214 repositories
  • pypi-attestations Public

    A library to convert between Sigstore Bundles and PEP 740 Attestation objects

    Python 8 Apache-2.0 5 5 0 Updated May 3, 2025
  • are-we-pep740-yet Public

    Are we PEP 740 yet?

    HTML 9 BSD-2-Clause 6 0 0 Updated May 1, 2025
  • dylint Public

    Run Rust lints from dynamic libraries

    Rust 445 Apache-2.0 37 40 (1 issue needs help) 10 Updated May 1, 2025
  • rfc3161-client Public

    An Opinionated Python RFC3161 Client

    Rust 2 Apache-2.0 2 2 0 Updated May 1, 2025
  • publications Public

    Publications from Trail of Bits

    Python 1,571 CC-BY-SA-4.0 191 4 2 Updated May 1, 2025
  • test-fuzz Public

    To make fuzzing Rust easy

    Rust 177 AGPL-3.0 25 12 5 Updated Apr 30, 2025
  • cookiecutter-python Public

    A cookiecutter template for a best-practices Python project

    Python 16 Apache-2.0 5 0 2 Updated Apr 29, 2025
  • mcp-figma Public Forked from smithery-ai/mcp-figma
    JavaScript 0 5 0 1 Updated Apr 29, 2025
  • CompChomper Public

    CompChomper is a framework for measuring how LLMs perform at code completion.

    Python 17 Apache-2.0 0 0 1 Updated Apr 29, 2025
  • necessist Public

    A mutation-based tool for finding bugs in tests

    Rust 116 AGPL-3.0 17 18 0 Updated Apr 29, 2025