Graph Evolution
作者 trailofbits82fe82262526無授權條款7.4K 個星標收錄於 2026年10月8日更新於 2026年10月8日儲存庫昨天更新
Compares Trailmark code graphs at two source code snapshots (git commits, tags, or directories) to surface security-relevant structural changes. Detects new attack paths, complexity shifts, blast radius growth, taint propagation changes, and privilege boundary modifications that text diffs miss. Use when comparing code between commits or tags, analyzing structural evolution, detecting attack surface growth, reviewing what changed between audit snapshots, or finding security-relevant changes that text diffs miss.
僅公開檔案列表。將技能安裝到工作區後即可檢視檔案內容。
| 路徑 | 大小 | 類型 |
|---|---|---|
| agents/openai.yaml | 246 B | application/yaml |
| assets/trail-of-bits-mark.svg | 3 KB | text/plain |
| references/evolution-metrics.md | 5.1 KB | text/markdown |
| references/report-format.md | 4.2 KB | text/markdown |
| scripts/graph_diff.py | 7.7 KB | text/plain |
| SKILL.md | 13.2 KB | text/markdown |
來源與署名
來源:trailofbits/skills位於plugins/trailmark/skills/graph-evolution提交82fe822
授權條款: 無授權條款
內容歸原作者所有。SourceWeft 從公開儲存庫中收錄這些內容。
更多來自 trailofbits/skills 的技能
Vector Forge
trailofbits
透過變異測試實作來找出未涵蓋的程式碼路徑,進而產生密碼學測試向量。
Wycheproof
trailofbits
指導使用 Project Wycheproof 測試向量驗證密碼學實作,涵蓋已知攻擊與邊界情況。
Ruzzy
trailofbits
指導安裝與使用 Ruzzy——Trail of Bits 針對 Ruby 程式碼與 C 擴充功能的覆蓋率導向模糊測試器。
Ossfuzz
trailofbits
指導將開源專案接入 OSS-Fuzz,並透過 helper.py 在本機執行模糊測試 harness。
Libfuzzer
trailofbits
指導在 C/C++ 程式碼上設定並執行 libFuzzer,涵蓋測試框架、建置、語料庫、sanitizer 與問題分類。
Trailmark
trailofbits
建立並查詢多語言原始碼與二進位程式碼圖,用於安全分析與稽核優先順序排序。
更多Security技能

Kyc Rules
anthropics
將公司的 KYC/AML 規則表套用於已解析的開戶紀錄,評定風險並給出處理路由。

Compliance Tracking
anthropics
追蹤合規要求、稽核準備情況,以及 SOC 2、ISO 27001、GDPR、HIPAA 和 PCI DSS 等框架的證據。

Dpop Adoption
指導為 Google OAuth 平台實作 OAuth 2.0 DPoP(RFC 9449)傳送方約束的更新權杖。

Secops Triage
引導 SOC 分析師對 Google SecOps 安全警示進行分診,從調查到結案或升級。

Secops Investigate
指導 SOC 分析師在 Google SecOps 中使用 UDM 查詢與時間軸進行深入的安全事件與實體調查。

Secops Hunt
指導在 Google SecOps 中使用 UDM 查詢、IoC 回溯、普遍性與異常分析進行主動威脅狩獵。