
r2ai
Radare2 AI plugin using local or remote LLMs for decompilation, function explanation, vulnerability detection, renaming, and scripted reverse…

Radare2 AI plugin using local or remote LLMs for decompilation, function explanation, vulnerability detection, renaming, and scripted reverse…

Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix,…

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

The community's most comprehensive, continuously-updated index of research on Large Language Models for software vulnerability detection — papers…

A multi-platform CI/CD vulnerability detection and attack automation tool for identifying security weaknesses in pipeline configurations.

🔍 Scan for CVE-2025-55182 risks in React Server Components with this non-intrusive tool that helps detect critical vulnerabilities in your…

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

A static analysis security vulnerability scanner for Ruby on Rails applications

Security module for php7 and php8 - Killing bugclasses and virtual-patching the rest!

Searches through git repositories for high entropy strings and secrets, digging deep into commit history

Agent-powered vulnerability scanner for large-scale codebases. Uses LLMs to find hard-to-detect security issues via regex matchers and AI…

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

Multi-agent static application-security review harness for AI coding agents: maps codebases, hunts vulnerability classes, chains and verifies…

Go proof-of-concept demonstrating CVE-2026-46595 in golang.org/x/crypto/ssh, using symbol inspection of stripped binaries and image scans to verify…

A collection of my Semgrep rules to facilitate vulnerability research.

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision