Skip to content
@trailofbits

Trail of Bits

More code: binary lifters @lifting-bits, blockchain @crytic, forks @trail-of-forks
The Trail of Bits logo

Since 2012, Trail of Bits has helped secure some of the world's most targeted organizations and devices.

We combine high-end security research with a real-world attacker mentality to reduce risk and fortify code.

Some of our work:


Pinned Loading

  1. publications publications Public

    Publications from Trail of Bits

    Python 1.6k 199

  2. algo algo Public

    Set up a personal VPN in the cloud

    Python 29.6k 2.3k

  3. fickling fickling Public

    A Python pickling decompiler and static analyzer

    Python 535 58

  4. vscode-weaudit vscode-weaudit Public

    Create code bookmarks and code highlights with a click.

    TypeScript 206 21

  5. semgrep-rules semgrep-rules Public

    Semgrep queries developed by Trail of Bits.

    Go 423 45

  6. codeql-queries codeql-queries Public

    CodeQL queries developed by Trail of Bits

    CodeQL 108 5

Repositories

Showing 10 of 231 repositories
  • buttercup Public
    trailofbits/buttercup’s past year of commit activity
    Python 222 AGPL-3.0 30 22 5 Updated Aug 9, 2025
  • mcp-context-protector Public

    MCP security wrapper

    trailofbits/mcp-context-protector’s past year of commit activity
    Python 135 Apache-2.0 8 4 1 Updated Aug 9, 2025
  • exploits Public
    trailofbits/exploits’s past year of commit activity
    Python 7 Apache-2.0 0 0 0 Updated Aug 9, 2025
  • signal-auditor Public

    Key Transparency Auditor for Signal

    trailofbits/signal-auditor’s past year of commit activity
    Rust 2 AGPL-3.0 0 0 0 Updated Aug 9, 2025
  • sigstore-rekor-types Public

    Python models for Rekor's API types

    trailofbits/sigstore-rekor-types’s past year of commit activity
    Python 6 Apache-2.0 3 1 13 Updated Aug 9, 2025
  • cookiecutter-python Public

    A cookiecutter template for a best-practices Python project

    trailofbits/cookiecutter-python’s past year of commit activity
    Python 18 Apache-2.0 6 0 6 Updated Aug 9, 2025
  • dylint Public

    Run Rust lints from dynamic libraries

    trailofbits/dylint’s past year of commit activity
    Rust 483 Apache-2.0 45 45 (1 issue needs help) 9 Updated Aug 9, 2025
  • pylock-attestations Public

    CLI tool to add attestation identities to `pylock.toml` files

    trailofbits/pylock-attestations’s past year of commit activity
    Python 5 Apache-2.0 1 3 1 Updated Aug 8, 2025
  • publications Public

    Publications from Trail of Bits

    trailofbits/publications’s past year of commit activity
    Python 1,631 CC-BY-SA-4.0 199 4 3 Updated Aug 8, 2025
  • datasig Public

    Dataset fingerprinting for AIBOM

    trailofbits/datasig’s past year of commit activity
    Python 15 AGPL-3.0 0 0 3 Updated Aug 8, 2025