
gitcolombo
🧬 Extract and analyze contributors info from git repos

🧬 Extract and analyze contributors info from git repos

Extract URLs, paths, secrets, and other interesting bits from JavaScript

Scans GitHub Actions CI/CD workflows for security vulnerabilities, indexes findings into a Neo4j graph database, and provides a query library for…

Use IDA PRO HexRays decompiler with OpenAI(ChatGPT) to find possible vulnerabilities in binaries

A tool to hunt for credentials in github wild AKA git*hunt

Go scripts for finding sensitive data like API key / some keywords in the github repository

Shell scripts to clone and mirror Git repositories, compute deltas, and run gitleaks to detect secrets hidden in deleted or reset commits.

A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.

Code viewer and searcher for manual code review. Features multi-instance file browsing, inline note keeper, and grep-like search to assist security…

Fast Go-based static scanner for detecting sensitive data (API keys, tokens, passwords) in JavaScript files and source code using regex patterns.

Use regular expressions to get sensitive information from a given repository (GitHub, pip or npm).

Rapid HTML grepping tool for recursively searching web pages by element type, headers, and content to locate login pages, tokens, vulnerable code,…

A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC

Command-line tool for fast searching of GitHub repositories, users, and commits to gather open-source intelligence and code-related information.

Black-box WordPress vulnerability scanner that detects security issues, enumerates users, brute-forces logins via XMLRPC, and performs static PHP…

Proof-of-concept exploit for CVE-2025-22710, a blind SQL injection vulnerability in the Smart Manager WordPress plugin (<=8.50.0). Includes technical…

Asset-wide detection tool for identifying jsPDF usage related to CVE-2025-68428 Detection only — no exploitation

CVE-2026-44680 exploit framework for MikroORM SQL injection. Detects and exploits JSON path injection vulnerabilities with UNION-based and blind data…