
tplmap
Server-Side Template Injection and Code Injection Detection and Exploitation Tool

Server-Side Template Injection and Code Injection Detection and Exploitation Tool

A tool to capture all the git secrets by leveraging multiple open source git searching tools

🐍 🔍 GuardDog is a CLI tool to Identify malicious PyPI and npm packages

Pluggable linting tool to prevent committing credential.

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

grep rough audit - source code auditing tool

Open-source Interactive Application Security Testing (IAST) tool that passively instruments Java applications to detect vulnerabilities and…

Vulnerability Patterns Detector for C# and VB.NET

Multifunctional java deobfuscation tool suite

VisualCodeGrepper - Code security scanning tool.

Electronegativity is a tool to identify misconfigurations and security anti-patterns in Electron applications.

A static code analysis for WordPress (and PHP)

Indexes C/C++ build artifacts into a queryable whole-program database, exposing AST, token, and IR-level APIs for code auditing and vulnerability…

A Chrome extension static analysis tool to help aide in security reviews.

PHP static application security testing (SAST) tool that performs taint analysis to detect XSS, SQL injection, and other vulnerabilities using…

Go library for encoding and decoding PKCS#12 files

Static code analysis tool based on Elasticsearch

Creosote is our solution to searching for the tarfile vulnerability described by CVE-2007-4559.