
faraday
Open Source Vulnerability Management Platform

Open Source Vulnerability Management Platform

A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curated across 24…

PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform

Self-hosted WAF and reverse proxy that filters malicious HTTP traffic, blocks SQL injection, XSS, and bot attacks, with rate limiting and dynamic…

ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. It has a robust event-based…

Curated collection of commands to validate leaked API keys from bug bounty programs and penetration tests, covering 80+ services including AWS,…

ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL…

Open-source API security platform for continuous API discovery, vulnerability testing, and runtime threat detection. Integrates with CI/CD pipelines…

The Shadow Daemon web application firewall server

An organizational asset and vulnerability management tool, with Jira integration, designed for generating application security reports.

Modern Web Firewall: stop account takeovers, weak passwords, cloud IPs, DoS attacks, disposable emails

SpringBoot_Actuator_RCE

F5 BIG-IP RCE exploitation (CVE-2022-1388)


Service that scans your Infrastructure as Code for common vulnerabilities

Verdict-as-a-Service SDKs: Analyze files for malicious content