
bearer
Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

A GitHub Action to find Unicode control characters using the Red Hat diagnostic tool https://access.redhat.com/security/vulnerabilities/RHSB-2021-007…

Pishi is a code coverage tool like kcov for macOS.

A lightweight security auditor and sandbox for shell scripts. Oversight combines a Static Analysis engine (Rust) with Dynamic Enforcement (Linux…

Scans compiled Java archives (JAR/WAR) for ECDSA algorithm usage to detect CVE-2022-21449 vulnerability. Recursively examines .class files with…

Detect and fix log4j log4shell vulnerability (CVE-2021-44228)

Traces user inputs to detect injection vulnerabilities in Java methods via JDWP and Frida, identifying potential command and SQL injection points.

JAR analysis tool for exploring, searching, and extracting specific classes from large JAR files with bytecode search, multi-selection extraction,…

Scans GitHub Actions CI/CD workflows for security vulnerabilities, indexes findings into a Neo4j graph database, and provides a query library for…

Static analysis of malicious Python code

Scans project dependencies for dependency confusion vulnerabilities and checks package owner email takeover risks across multiple registries (npm,…


A scanner that files with compromised or untrusted code signing certificates written in python.

APKinspector is a powerful GUI tool for analysts to analyze the Android applications.

Vimana is an experimental security tool that aims to provide resources for auditing Python web applications.

Server-Side Template Injection and Code Injection Detection and Exploitation Tool

Go-based automation tool that scans GitHub repositories for vulnerable Next.js versions (CVE-2025-66478) and automatically creates pull requests with…

PHP static application security testing (SAST) tool that performs taint analysis to detect XSS, SQL injection, and other vulnerabilities using…