
alibi
Cross-check the views of your attack surface and find the endpoints that cannot corroborate each other.

Cross-check the views of your attack surface and find the endpoints that cannot corroborate each other.

LuaJIT FFI bindings for libinjection, providing SQL injection and XSS detection with context-specific APIs for web application security.

Intentionally vulnerable banking platform for practicing web application, API, and AI/LLM security testing, secure code review, and DevSecOps…

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

Application Security Verification Standard

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Scan codebases and GCP projects for exposed API credentials

Formal inter-procedural taint analysis engine for application security. Tracks untrusted data across function boundaries, persistence layers, and…

ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.