
TrojanSourceFinder
🔎 Help find Trojan Source vulnerability in code 👀 . Useful for code review in project with multiple collaborators (CI/CD)

🔎 Help find Trojan Source vulnerability in code 👀 . Useful for code review in project with multiple collaborators (CI/CD)

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

Octoscan is a static vulnerability scanner for GitHub action workflows.

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Agent-powered vulnerability scanner for large-scale codebases. Uses LLMs to find hard-to-detect security issues via regex matchers and AI…

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

PoC reproducer for CVE-2026-49042 (Apache Camel camel-langchain4j-tools): a prompt-injected LLM's tool-call arguments become unfiltered Exchange…

A demonstration of CVE-2022-42889 (text4shell) remote code execution vulnerability

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Skills for threat modeling, scanning, triage, patching, plus an autonomous scanning harness you can /customize

A static analysis security vulnerability scanner for Ruby on Rails applications

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

Server-Side Template Injection and Code Injection Detection and Exploitation Tool

Curated directory of Node.js security tools, static analyzers, vulnerability scanners, and educational resources covering OWASP Top 10, supply chain…

Zero shot vulnerability discovery using LLMs

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.