RepoGuard
Updated 8 h ago
Trail of Bits

Organization

Public GitHub footprint of Trail of Bits

@trailofbits
View profile on GitHub

More code: binary lifters @lifting-bits, blockchain @crytic, forks @trail-of-forks

New York, New York

278

Public repositories

67,246

Total stars

2,929

Followers

Trail of Bits maintains a significant public presence on GitHub, focusing on security research and vulnerability detection. Their repositories primarily utilize languages such as Python, Rust, and C++. Notable projects include algo, a personal VPN setup, and skills, which aids in security research workflows.

Top languages

Python 33Rust 20C++ 12Go 9C 5Shell 4TypeScript 3HTML 2

Public repositories

algo

30,278

Set up a personal VPN in the cloud

Python
Updated Jun 13, 2026

skills

5,684

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

Python
Updated Jun 13, 2026

manticore

3,857

Symbolic execution tool

Python
Updated Jun 12, 2026

graphtage

2,473

A semantic diff utility and library for tree-like files such as JSON, JSON5, XML, HTML, YAML, and CSV.

Python
Updated Jun 11, 2026

claude-code-config

2,011

Opinionated defaults, documentation, and workflows for Claude Code at Trail of Bits

Shell
Updated Jun 12, 2026

publications

1,843

Publications from Trail of Bits

Python
Updated Jun 11, 2026

buttercup

1,605

Buttercup finds and patches software vulnerabilities

Python
Updated Jun 11, 2026

ctf

1,426

CTF Field Guide

C
Updated Jun 12, 2026

anamorpher

1,060

image scaling attacks for multi-modal prompt injection

Python
Updated Jun 10, 2026

pe-parse

901

Principled, lightweight C/C++ PE parser

C++
Updated Jun 3, 2026

deepstate

861

A unit test-like interface for fuzzing and symbolic execution

Python
Updated Jun 7, 2026

claude-code-devcontainer

858

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

Shell
Updated Jun 13, 2026

eth-security-toolbox

735

A Docker container preconfigured with all of the Trail of Bits Ethereum security tools.

Dockerfile
Updated Jun 10, 2026

onesixtyone

705

Fast SNMP Scanner

C
Updated Jun 12, 2026

maat

650

Open-source symbolic execution framework: https://maat.re

C++
Updated Jun 12, 2026

fickling

634

A Python pickling decompiler and static analyzer

Python
Updated Jun 12, 2026

winchecksec

611

Checksec, but for Windows: static detection of security mitigations in executables

C++
Updated Jun 4, 2026

dylint

608

Run Rust lints from dynamic libraries

Rust
Updated Jun 11, 2026

polytracker

592

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

C++
Updated Jun 10, 2026

cb-multios

539

DARPA Challenges Sets for Linux, Windows, and macOS

C
Updated Jun 4, 2026

semgrep-rules

514

Semgrep queries developed by Trail of Bits.

Go
Updated Jun 7, 2026

multiplier

475

Code auditing productivity multiplier.

C++
Updated Jun 8, 2026

vast

444

VAST is an experimental compiler pipeline designed for program analysis of C and C++. It provides a tower of IRs as MLIR dialects to choose the best fit representations for a program analysis or further program abstraction.

C++
Updated Jun 13, 2026

skills-curated

437

Curated, community-vetted Claude Code plugin marketplace

Python
Updated Jun 11, 2026

trailmark

412

Build and query a graph database representation of source code

C
Updated Jun 11, 2026

it-depends

393

A tool to automatically build a dependency graph and Software Bill of Materials (SBOM) for packages and arbitrary source code repositories.

Python
Updated Jun 12, 2026

RpcInvestigator

359

Exploring RPC interfaces on Windows

C#
Updated Jun 12, 2026

SecureEnclaveCrypto

288

Demonstration library for using the Secure Enclave on iOS

Swift
Updated May 24, 2026

protofuzz

285

Google Protocol Buffers message generator

Python
Updated Jun 11, 2026

CoBRA

281

Coefficient-Based Reconstruction of Arithmetic — a Mixed Boolean-Arithmetic (MBA) expression simplifier for deobfuscation

C++
Updated Jun 12, 2026

mishegos

268

A differential fuzzer for x86 decoders

C++
Updated Jun 11, 2026

circomspect

264

A static analyzer and linter for the Circom zero-knowledge DSL

Rust
Updated Jun 2, 2026

binjascripts

259

Scripts for Binary Ninja

Python
Updated Jun 6, 2026

vscode-weaudit

233

Create code bookmarks and code highlights with a click.

TypeScript
Updated Jun 7, 2026

siderophile

227

Find the ideal fuzz targets in a Rust codebase

Rust
Updated Jun 10, 2026

mcp-context-protector

221

MCP security wrapper

Python
Updated Jun 6, 2026

PrivacyRaven

213

Privacy Testing for Deep Learning

Python
Updated May 24, 2026

test-fuzz

208

To make fuzzing Rust easy

Rust
Updated Jun 4, 2026

zkdocs

184

Interactive documentation on zero-knowledge proof systems and related primitives.

HTML
Updated Jun 11, 2026

flying-sandbox-monster

183

Sandboxed, Rust-based, Windows Defender Client

Rust
Updated May 28, 2026

not-going-anywhere

178

A set of vulnerable Golang programs

Go
Updated Jun 5, 2026

BTIGhidra

172

Binary Type Inference Ghidra Plugin

Java
Updated Jun 12, 2026

codeql-queries

166

CodeQL queries developed by Trail of Bits

CodeQL
Updated Jun 7, 2026

mquire

162

Zero-dependency Linux memory forensics PoC — leverages kernel-embedded BTF and kallsyms for type-aware memory analysis without external debug info.

Rust
Updated Jun 12, 2026

necessist

143

A mutation-based tool for finding bugs in tests

Rust
Updated Jun 9, 2026

ctf-challenges

143

CTF Challenges

Solidity
Updated Jun 4, 2026

pasta

138

Peter's Amazing Syntax Tree Analyzer

C++
Updated May 25, 2026

testing-handbook

129

Trail of Bits Testing Handbook - appsec.guide

Rust
Updated Jun 9, 2026

ebpfpub

124

ebpfpub is a generic function tracing library for Linux that supports tracepoints, kprobes and uprobes.

C++
Updated May 27, 2026

ruzzy

121

A coverage-guided fuzzer for pure Ruby code and Ruby C extensions

Ruby
Updated Jun 2, 2026

dropkit

119

A CLI tool for managing DigitalOcean droplets with automated setup, SSH configuration, and lifecycle management.

Python
Updated Jun 10, 2026

appjaillauncher-rs

109

AppJailLauncher in Rust

Rust
Updated May 28, 2026

gosentry

105

Security-oriented Go toolchain, focused on state-of-the-art fuzzing capabilities.

Go
Updated Jun 13, 2026

ios-integrity-validator

101

Integrity validator for iOS devices

Shell
Updated Jun 4, 2026

afc-buttercup

99

Buttercup CRS as submitted to the AIxCC Final Competition

Python
Updated Jun 8, 2026

slither-mcp

91

MCP server for Slither static analysis of Solidity smart contracts

Python
Updated Jun 9, 2026

cargo-unmaintained

91

Find unmaintained packages in Rust projects

Rust
Updated Jun 6, 2026

blight

91

A framework for instrumenting build tools

Python
Updated May 29, 2026

vendetect

82

A tool to automatically detect copy+pasted and vendored code between repositories

Python
Updated Jun 5, 2026

Codex-Decompiler

81

No description provided for this repository.

Python
Updated Jun 11, 2026

eatmynetwork

57

A small script for running programs with (minimal) network sandboxing

Shell
Updated May 24, 2026

vscode-sarif-explorer

52

SARIF Explorer: A VSCode extension that helps you visualize and triage static analysis results

TypeScript
Updated Jun 10, 2026

go-panikint

47

It's the Go compiler, but it panics on arithmetic and truncation issues.

Go
Updated Jun 8, 2026

indurative

42

Easily create authenticated data structures

Haskell
Updated Jun 4, 2026

mewt

41

mewt is a mutation testing framework

C
Updated Jun 3, 2026

cookiecutter-python

38

A cookiecutter template for a best-practices Python project

Python
Updated Jun 1, 2026

scribe

34

Local transcription and speaker diarization with pyannote and parakeet

Python
Updated May 29, 2026

vsix-audit

30

Security scanner for VS Code extensions

TypeScript
Updated Jun 12, 2026

build-wrap

29

Help protect against malicious build scripts

Rust
Updated May 31, 2026

go-mutexasserts

28

A small library that allows to check if Go mutexes are locked

Go
Updated May 25, 2026

idac

26

idac - IDA Pro command line tool for agents and humans

Python
Updated Jun 8, 2026

linuxevents

26

A sample PoC for container-aware exec events for osquery

C++
Updated Jun 4, 2026

checksec-anywhere

25

Analyze binary security features instantly in your browser.

Rust
Updated Jun 9, 2026

ml-dsa

23

FIPS-204 (ML-DSA) implementation in Go

Go
Updated May 26, 2026

overtly-malicious-skills

22

Malicious skills for testing skill scanners

Python
Updated Jun 11, 2026

mpc-learning

21

Perform multi-party computation on machine learning applications

Python
Updated Jun 7, 2026

trailmix

20

No description provided for this repository.

Rust
Updated Jun 12, 2026

windows-acl

20

Rust crate to simplify Windows ACL operations

Rust
Updated Jun 4, 2026

anchor-coverage

15

A wrapper around `anchor test` for computing test coverage

Rust
Updated Jun 9, 2026

tlslib.py

14

MVP for updated PEP 543 proposal

Python
Updated Jun 12, 2026

quantum-zk-proof-poc

14

Proof-of-concept code for beating Google's ZK proof of quantum cryptanalysis

Python
Updated Jun 8, 2026

lms-go

14

Leighton-Micali Hash-Based Signatures, for Go

Go
Updated Jun 4, 2026

rfc8785.py

12

A pure-Python implementation of RFC8785 (JSON Canonicalization Scheme)

Python
Updated Jun 9, 2026

are-we-pep740-yet

9

Are we PEP 740 yet?

HTML
Updated Jun 1, 2026

android-security-tools

9

Android sandbox and IPC enumeration tools

C++
Updated Jun 1, 2026

cargo-line-test

8

Run tests by the lines they exercise

Rust
Updated Jun 10, 2026

rfc3161-client

7

An Opinionated Python RFC3161 Client

Rust
Updated Jun 11, 2026

elaborate

7

Wrappers for standard library functions and types to produce more elaborate error messages

Rust
Updated Jun 10, 2026

sholva

7

An experimental Tiny86 decoder and verifier for SIEVE

Rust
Updated May 27, 2026

pylock-attestations

6

CLI tool to add attestation identities to `pylock.toml` files

Python
Updated Jun 12, 2026

aifirst-insecure-agent-labs

6

No description provided for this repository.

Python
Updated May 23, 2026

pip-plugin-pep740

5

An implementation of a pip plugin that verifies PEP-740 attestations before installing a package, and aborts the installation if verification fails.

Python
Updated Jun 10, 2026

masm-lsp

4

An LSP server for the Miden assembly language

Rust
Updated May 27, 2026

gh-action-adapt-sigstore-pypi

2

No description provided for this repository.

Python
Updated Jun 11, 2026

boulder

1

An ACME-based certificate authority, written in Go.

Go
Updated Jun 11, 2026

sigstore-tuf-simple

1

No description provided for this repository.

Go
Updated May 25, 2026

tamarin-prover

0

Main source code repository of the Tamarin prover for security protocol verification.

Unknown Language
Updated Jun 12, 2026

go-jose

0

An implementation of JOSE standards (JWE, JWS, JWT) in Go

Unknown Language
Updated Jun 5, 2026

pkcs11key

0

An interface to PKCS#11 devices that satisfies the crypto.Signer interface

Unknown Language
Updated Jun 5, 2026

borp

0

Boulder's version of go-gorp/gorp

Unknown Language
Updated Jun 5, 2026

Frequently asked questions

What does trailofbits build on GitHub?

Trail of Bits develops a wide range of projects on GitHub, including tools for security research, vulnerability detection, and audit workflows. Their notable repositories feature applications like algo for VPN setups and manticore for symbolic execution.

Which programming languages does trailofbits use?

Trail of Bits primarily uses Python, Rust, C++, Go, C, and Shell in their public repositories. This diverse selection allows them to address various aspects of security and software development.

Are trailofbits's repositories public?

Yes, all of Trail of Bits's repositories on GitHub are public. This transparency allows the community to access, contribute to, and benefit from their security-focused projects.

Is this exposure intended?

Monitor Trail of Bits with RepoGuard and get alerted the moment a new public repository appears.

Monitor this account