Skip to content
@trailofbits

Trail of Bits

More code: binary lifters @lifting-bits, blockchain @crytic, forks @trail-of-forks
The Trail of Bits logo

Since 2012, Trail of Bits has helped secure some of the world's most targeted organizations and devices.

We combine high-end security research with a real-world attacker mentality to reduce risk and fortify code.

Some of our work:


Pinned Loading

  1. publications publications Public

    Publications from Trail of Bits

    Python 1.7k 207

  2. algo algo Public

    Set up a personal VPN in the cloud

    Python 30k 2.4k

  3. fickling fickling Public

    A Python pickling decompiler and static analyzer

    Python 569 62

  4. vscode-weaudit vscode-weaudit Public

    Create code bookmarks and code highlights with a click.

    TypeScript 217 23

  5. semgrep-rules semgrep-rules Public

    Semgrep queries developed by Trail of Bits.

    Go 449 47

  6. codeql-queries codeql-queries Public

    CodeQL queries developed by Trail of Bits

    CodeQL 130 6

Repositories

Showing 10 of 239 repositories
  • necessist Public

    A mutation-based tool for finding bugs in tests

    trailofbits/necessist’s past year of commit activity
    Rust 125 AGPL-3.0 18 17 2 Updated Oct 28, 2025
  • cargo-unmaintained Public

    Find unmaintained packages in Rust projects

    trailofbits/cargo-unmaintained’s past year of commit activity
    Rust 80 AGPL-3.0 13 12 6 Updated Oct 28, 2025
  • build-wrap Public

    Help protect against malicious build scripts

    trailofbits/build-wrap’s past year of commit activity
    Rust 16 AGPL-3.0 4 2 1 Updated Oct 28, 2025
  • pylock-attestations Public

    CLI tool to add attestation identities to `pylock.toml` files

    trailofbits/pylock-attestations’s past year of commit activity
    Python 5 Apache-2.0 1 3 0 Updated Oct 27, 2025
  • algo Public

    Set up a personal VPN in the cloud

    trailofbits/algo’s past year of commit activity
    Python 30,021 AGPL-3.0 2,358 79 (3 issues need help) 4 Updated Oct 27, 2025
  • dylint Public

    Run Rust lints from dynamic libraries

    trailofbits/dylint’s past year of commit activity
    Rust 511 Apache-2.0 47 41 (1 issue needs help) 9 Updated Oct 27, 2025
  • publications Public

    Publications from Trail of Bits

    trailofbits/publications’s past year of commit activity
    Python 1,671 CC-BY-SA-4.0 206 7 6 Updated Oct 27, 2025
  • anchor-coverage Public

    A wrapper around `anchor test` for computing test coverage

    trailofbits/anchor-coverage’s past year of commit activity
    Rust 11 AGPL-3.0 3 3 2 Updated Oct 27, 2025
  • pip-plugin-pep740 Public

    An implementation of a pip plugin that verifies PEP-740 attestations before installing a package, and aborts the installation if verification fails.

    trailofbits/pip-plugin-pep740’s past year of commit activity
    Python 2 Apache-2.0 0 1 0 Updated Oct 27, 2025
  • mcp-context-protector Public

    MCP security wrapper

    trailofbits/mcp-context-protector’s past year of commit activity
    Python 197 Apache-2.0 13 3 2 Updated Oct 27, 2025

Top languages

Loading…