
strix
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Shannon is an autonomous, white-box AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes…

PHP Static Analysis Tool - discover bugs in your code without running it!

Snyk CLI scans and monitors your projects for security vulnerabilities.

Ah shhgit! Find secrets in your code. Secrets detection for your GitHub, GitLab and Bitbucket repositories.

Connect your favorite AI agents directly to Cheat Engine via MCP. Automate reverse engineering, pointer scanning, and memory analysis using natural…

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

Cloud native secrets management for developers - never leave your command line for secrets.

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

mobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and…

AI-powered cybersecurity chatbot designed to provide helpful and accurate answers to your cybersecurity-related queries and also do code analysis and…

Performing security tests inside your CI

A decompiler-agnostic plugin for interacting with AI in your decompiler. GPT-4, Claude, and local models supported!

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

a fast check, if your server could be vulnerable to CVE-2021-44228

One command to fix CVE-2025-66478 (React 2 Shell RCE) in your Next.js / React RSC app.

Write your BPF programs in Go, not C. gobee transpiles a Go subset to BPF C and generates typed cilium/ebpf bindings.