
cherrybomb
CLI tool that audits OpenAPI specifications, validates them against best practices, and runs automated security tests to detect vulnerabilities and…

CLI tool that audits OpenAPI specifications, validates them against best practices, and runs automated security tests to detect vulnerabilities and…

The easiest, and most secure way to access and protect all of your infrastructure.

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

A reverse proxy like nginx, built on pingora, simple and efficient.

Intel Pin-based tracer for API calls, syscalls, and instructions with anti-debug evasion, used for malware analysis and reverse engineering of packed…

Lightweight edge HTTP(S) server and reverse proxy with automatic SSL, Docker/Consul discovery, per-route authentication, rate limiting, and…

Selfhosted alternative to 12ft.io. and 1ft.io. Proxy to remove CORS headers and modify HTML

Defense-in-depth bundle for MCP stdio servers: drop-in guardExec/guardSpawn wrappers, AST audit CLI, reference MCP server. Closes the Ox-Security…

SAML v2.0 bindings in Java using JAXB

Cobalt Strike HTTPS beaconing over Microsoft Graph API

CVE-2025-55182 and CVE-2025-66478