
FLAWED
Fix-Like Artifacts With Embedded Defects

Fix-Like Artifacts With Embedded Defects

a systems programming language prioritizing verifiable correctness, determinism, and performance

LuaJIT FFI bindings for libinjection, providing SQL injection and XSS detection with context-specific APIs for web application security.

Agent-native CLI wrapping IDA Pro IDALib for stateless, JSON-output binary analysis: disassembly, Hex-Rays decompilation, CFG, xrefs, strings, and…

Fuzzing Framework for Modules in Apache HTTPD Server

100% Free & Open Source • Privacy-First Security Scanning and AI Code Review CLI

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

CVE-2026-0006: Heap buffer overflow PoC for libopenapv (Android APV codec) - CVSS 9.8

Cross-check the views of your attack surface and find the endpoints that cannot corroborate each other.

BianryNinja plugin for identifying vulnerabilities in decompiled binaries with both programmatic scans and LLM support.

Scans code diffs with context to build an impact graph and uses LLMs to find vulnerabilities, supporting multi-repo scans and CI gating with SARIF…

CVE-2021-3156 POC and Docker and Analysis write up

Dynamic branch-divergence finder for native code -- traces two Frida executions and finds the exact instruction where they diverge.

ADT is a toolset designed to help model application behavior, research and test security vulnerabilities, and facilitate reversing hostile code.

CVE-Candidate: DoS in [email protected] via comma-separated brace expansion (CVE-2024-4068 incomplete fix)

CVE-2022-3653 just the c++ component in Vulkan for later study

Defense-in-depth bundle for MCP stdio servers: drop-in guardExec/guardSpawn wrappers, AST audit CLI, reference MCP server. Closes the Ox-Security…

AI Prompt Secret Scanner: local proxy and Claude Code hook that blocks secrets before they reach AI APIs