
slither-mcp
MCP server for Slither static analysis of Solidity smart contracts

MCP server for Slither static analysis of Solidity smart contracts

AI-powered SAST scanner that finds auth bypass, IDOR, and logic bugs Semgrep/CodeQL miss. Free GitHub Action. Supports Python, JS/TS, Go, PHP, Ruby.

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…

CVE 2025 27237 Zabbix LPE proof of concept.

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

A fork of JSONPath from http://goessner.net/articles/JsonPath/

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

Build and query a graph database representation of source code

Vba2Graph - Generate call graphs from VBA code, for easier analysis of malicious documents.

FileInsight-plugins: decoding toolbox of McAfee FileInsight hex editor for malware analysis

Static analysis of wordpress plugins

CVE-2023-0297: The Story of Finding Pre-auth RCE in pyLoad

WslinkVMAnalyzer is a tool to facilitate analysis of code protected by a virtual machine featured in Wslink malware

We would like to request that all contributors please clone a *fresh copy* of this repository since the September 21st maintenance.

[NeurIPS '25] Code for Paper "IF-Guide: Influence Function-Guided Suppression of Harmful Training Data for Reducing LLM Toxicity"

Create useful, lightweight static analyses using open source tools + a tiny bit of your code

Proof of Concept exploitation of CVE-2026-5760 - RCE in SGLang 0.5.9 via malicious GGUF