Skip to content
@trailofbits

Trail of Bits

More code: binary lifters @lifting-bits, blockchain @crytic, forks @trail-of-forks
The Trail of Bits logo

Since 2012, Trail of Bits has helped secure some of the world's most targeted organizations and devices.

We combine high-end security research with a real-world attacker mentality to reduce risk and fortify code.

Some of our work:


Pinned Loading

  1. publications publications Public

    Publications from Trail of Bits

    Python 1.7k 207

  2. algo algo Public

    Set up a personal VPN in the cloud

    Python 30k 2.4k

  3. fickling fickling Public

    A Python pickling decompiler and static analyzer

    Python 571 63

  4. vscode-weaudit vscode-weaudit Public

    Create code bookmarks and code highlights with a click.

    TypeScript 217 23

  5. semgrep-rules semgrep-rules Public

    Semgrep queries developed by Trail of Bits.

    Go 451 47

  6. codeql-queries codeql-queries Public

    CodeQL queries developed by Trail of Bits

    CodeQL 134 6

Repositories

Showing 10 of 240 repositories
  • buttercup Public

    Buttercup finds and patches software vulnerabilities

    trailofbits/buttercup’s past year of commit activity
    Python 1,317 AGPL-3.0 139 46 6 Updated Nov 5, 2025
  • algo Public

    Set up a personal VPN in the cloud

    trailofbits/algo’s past year of commit activity
    Python 30,040 AGPL-3.0 2,358 80 (3 issues need help) 5 Updated Nov 5, 2025
  • necessist Public

    A mutation-based tool for finding bugs in tests

    trailofbits/necessist’s past year of commit activity
    Rust 126 AGPL-3.0 18 19 1 Updated Nov 5, 2025
  • go-panikint Public Forked from golang/go

    It's the Go compiler, but it panics on arithmetic and truncation issues.

    trailofbits/go-panikint’s past year of commit activity
    Go 5 BSD-3-Clause 19,470 1 0 Updated Nov 4, 2025
  • muton Public

    Mutation testing framework for TON smart contracts

    trailofbits/muton’s past year of commit activity
    C 0 AGPL-3.0 0 0 0 Updated Nov 4, 2025
  • rfc3161-client Public

    An Opinionated Python RFC3161 Client

    trailofbits/rfc3161-client’s past year of commit activity
    Rust 2 Apache-2.0 4 2 0 Updated Nov 4, 2025
  • test-fuzz Public

    To make fuzzing Rust easy

    trailofbits/test-fuzz’s past year of commit activity
    Rust 190 AGPL-3.0 24 10 4 Updated Nov 4, 2025
  • build-wrap Public

    Help protect against malicious build scripts

    trailofbits/build-wrap’s past year of commit activity
    Rust 17 AGPL-3.0 4 2 0 Updated Nov 4, 2025
  • cookiecutter-python Public

    A cookiecutter template for a best-practices Python project

    trailofbits/cookiecutter-python’s past year of commit activity
    Python 20 Apache-2.0 6 0 3 Updated Nov 3, 2025
  • ruzzy Public

    A coverage-guided fuzzer for pure Ruby code and Ruby C extensions

    trailofbits/ruzzy’s past year of commit activity
    Ruby 106 AGPL-3.0 6 9 0 Updated Nov 3, 2025