
java-html-sanitizer
Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

Toolbox containing research notes & PoC code for weaponizing .NET's DLR

This skill helps Claude write secure code and prevent common vulnerabilities.

Scalable assembly analysis platform for indexing, clone search, and executable classification using static, dynamic, and machine-learning techniques…

A reverse engineering framework written in Python.

Modular software verification toolchain that translates LLVM IR into Boogie intermediate verification language for bounded and experimental unbounded…

Build and query a graph database representation of source code

Rust macros and Cargo subcommand to automate fuzzing with afl.rs, including corpus generation and harness implementation, integrated with Rust's…

ATrace is a tool for tracing execution of binaries on Windows.

pyREtic is an extensible framework for in-memory Python 2.x bytecode reverse engineering

Given JSON-like content, The JSON Sanitizer converts it to valid JSON.

LLM-agent-powered concolic execution engine that instruments source code, summarizes path constraints in natural language, and generates test cases…

Trail of Bits Testing Handbook - appsec.guide

OWASP Secure Agent Playbook Project

Formal inter-procedural taint analysis engine for application security. Tracks untrusted data across function boundaries, persistence layers, and…

A powerful decompiler that lets you reverse-engineer React Native mobile apps by converting their compiled Hermes bytecode (.hbc) files back into…

Exploit for CVE-2022-22947: remote code execution in Spring Cloud Gateway via crafted requests to the Actuator endpoint. Includes Python script and…