Skip to content
@trailofbits

Trail of Bits

More code: binary lifters @lifting-bits, blockchain @crytic, forks @trail-of-forks
The Trail of Bits logo

Since 2012, Trail of Bits has helped secure some of the world's most targeted organizations and devices.

We combine high-end security research with a real-world attacker mentality to reduce risk and fortify code.

Some of our work:


Pinned Loading

  1. publications publications Public

    Publications from Trail of Bits

    Python 1.6k 199

  2. algo algo Public

    Set up a personal VPN in the cloud

    Jinja 29.6k 2.3k

  3. fickling fickling Public

    A Python pickling decompiler and static analyzer

    Python 532 57

  4. vscode-weaudit vscode-weaudit Public

    Create code bookmarks and code highlights with a click.

    TypeScript 205 21

  5. semgrep-rules semgrep-rules Public

    Semgrep queries developed by Trail of Bits.

    Go 418 42

  6. codeql-queries codeql-queries Public

    CodeQL queries developed by Trail of Bits

    CodeQL 106 5

Repositories

Showing 10 of 226 repositories
  • are-we-pep740-yet Public

    Are we PEP 740 yet?

    trailofbits/are-we-pep740-yet’s past year of commit activity
    HTML 9 BSD-2-Clause 6 0 0 Updated Aug 1, 2025
  • pajaMAS Public

    Multi-agent system (MAS) hijacking demos

    trailofbits/pajaMAS’s past year of commit activity
    Python 10 Apache-2.0 2 2 0 Updated Jul 30, 2025
  • mcp-context-protector Public

    MCP security wrapper

    trailofbits/mcp-context-protector’s past year of commit activity
    Python 95 Apache-2.0 2 1 3 Updated Jul 30, 2025
  • instafix-llvm Public Forked from llvm/llvm-project

    LLVM fork for INSTAFIX

    trailofbits/instafix-llvm’s past year of commit activity
    LLVM 2 14,868 0 4 Updated Jul 30, 2025
  • cookiecutter-python Public

    A cookiecutter template for a best-practices Python project

    trailofbits/cookiecutter-python’s past year of commit activity
    Python 17 Apache-2.0 6 0 2 Updated Jul 30, 2025
  • rfc3161-client Public

    An Opinionated Python RFC3161 Client

    trailofbits/rfc3161-client’s past year of commit activity
    Rust 2 Apache-2.0 4 2 0 Updated Jul 29, 2025
  • siderophile Public

    Find the ideal fuzz targets in a Rust codebase

    trailofbits/siderophile’s past year of commit activity
    Rust 216 MIT 12 12 (3 issues need help) 11 Updated Jul 29, 2025
  • necessist Public

    A mutation-based tool for finding bugs in tests

    trailofbits/necessist’s past year of commit activity
    Rust 121 AGPL-3.0 17 17 1 Updated Jul 29, 2025
  • build-wrap Public

    Help protect against malicious build scripts

    trailofbits/build-wrap’s past year of commit activity
    Rust 13 AGPL-3.0 3 0 4 Updated Jul 28, 2025
  • vendetect Public

    A tool to automatically detect copy+pasted and vendored code between repositories

    trailofbits/vendetect’s past year of commit activity
    Python 47 AGPL-3.0 5 1 1 Updated Jul 28, 2025