
ClawGuard
Modular security toolkit for autonomous agents providing static analysis, configuration auditing, runtime monitoring, and supply chain verification…

Modular security toolkit for autonomous agents providing static analysis, configuration auditing, runtime monitoring, and supply chain verification…

ngxray — nginx config security scanner

Open-source, cross-platform, multi-purpose security auditing tool

Detect-only scanner for CVE-2026-42945 (NGINX Rift), a heap overflow in ngx_http_rewrite_module. Version detection + nginx.conf pattern analysis.…

cve-2025-4615 poc & deep dive

ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

WhiteBox CMS analysis

Rule-based linter for OpenSSH client config files that detects duplicate hosts, missing identity files, weak algorithms, wildcard ordering issues,…

CVE-2026-42533 Nginx

CVE-2026-11837: local privilege escalation in the ansible.posix authorized_key module via symlink-following chown. Technical writeup; sibling of…

log4j vulnerability wrapper scanner for CVE-2021-44228

common-user-management is a robust Spring Boot application featuring user management services designed to control user access dynamically. There is a…

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

.NET/PowerShell/VBA Offensive Security Obfuscator

A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings

Automatic SSTI detection tool with interactive interface

Modular software verification toolchain that translates LLVM IR into Boogie intermediate verification language for bounded and experimental unbounded…