
static-code-analysis-helper
Scans project source code across 16 languages to flag dangerous functions linked to SQLi, XSS, SSRF, command injection, weak crypto, and other web…

Scans project source code across 16 languages to flag dangerous functions linked to SQLi, XSS, SSRF, command injection, weak crypto, and other web…

Source-level debugger for Go with CLI, API, and headless modes; supports breakpoints, variable inspection, and execution tracing for efficient…

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…


Consul Template validated where a symlink pointed during template evaluation, but its later dependency fetch read the original path. Retargeting the…

BlockChain Security Construction

Ghidra scripts for recovering string definitions in Go binaries

Go static analysis tool that checks for security issues using an AST.

Extract URLs, paths, secrets, and other interesting bits from JavaScript

Runtime-aware SCA — proves which CVEs are actually reachable, not just installed.

CVE-2018-6574 POC : golang 'go get' remote command execution during source code build

Implementações de servidores HTML em GO para análise da vulnerabilidade CVE-2023-29406.

Source code for the Binaries of OWASP WrongSecrets

🐺 Vulfy – Fast Rust based package version scanner

Security-oriented Go toolchain, focused on state-of-the-art fuzzing capabilities.

MCP Server for Ghidra

CVE-2026-42533 Nginx