- Joined
- Jan 8, 2019
- Messages
- 56,602
- Solutions
- 2
- Reputation
- 32
- Reaction score
- 100,445
- Points
- 2,313
- Credits
- 32,540
6 Years of Service
76%

TrojanSourceFinder helps developers detect "Trojan Source" vulnerability in source code.
Trojan Source vulnerability allows an attacker to make malicious code appear innocent. In general, the attacker tries to lure by passing his code off as a comment (visually). It is a serious threat because it concerns many languages. Projects with multiple "untrusted" sources could be concerned
v1.1.1 Latest
make verbosity as low as possible (only if scan has detected things)
change exit code if scan detect something (for pipelines mainly)
add -t flag to only scan text file
To see this hidden content, you must like this content.