
fickling
A Python pickling decompiler and static analyzer

A Python pickling decompiler and static analyzer

Set of tools to assess and improve LLM security.

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

AI-powered vulnerability scanner extension for Burp Suite with multi-provider support (Ollama, OpenAI, Claude, Gemini)

Proof-of-concept exploit for CVE-2023-49314 demonstrating code injection in Asana Desktop on macOS via Electron Fuses, with automated vulnerability…

A minimal, secure Python interpreter written in Rust for use by AI

An Evaluation Agent for Detecting Misinformation and Knowledge Poisoning in Retrieval-Augmented Generation Systems.

Intentionally vulnerable banking platform for practicing web application, API, and AI/LLM security testing, secure code review, and DevSecOps…

Shannon is an autonomous, white-box AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes…

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis

Security scanner for AI agents, MCP servers and agent skills.

The Security Toolkit for LLM Interactions

The community's most comprehensive, continuously-updated index of research on Large Language Models for software vulnerability detection — papers…

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

A benchmark for evaluating AI agents on fixing real-world security vulnerabilities.

NOVA - Claude Code Protection System against prompt injection attacks

AI-powered SAST scanner that finds auth bypass, IDOR, and logic bugs Semgrep/CodeQL miss. Free GitHub Action. Supports Python, JS/TS, Go, PHP, Ruby.

Benchmark measuring AI models' ability to detect vulnerabilities in source code via real bug bounty cases with balanced recall and false-positive…