





bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

Finding potential software vulnerabilities from git commit messages

Prevents you from committing secrets and credentials into git repositories

Extract URLs, paths, secrets, and other interesting bits from JavaScript

A fork of JSONPath from http://goessner.net/articles/JsonPath/

Git hook-based secret scanner that detects tokens, passwords, and private keys in outgoing changesets, preventing sensitive data from being committed…

Exports disassembly from IDA Pro, Ghidra, and Binary Ninja into compact protobuf files for fast, standalone binary analysis and program manipulation…

Vba2Graph - Generate call graphs from VBA code, for easier analysis of malicious documents.

find hardcoded strings from source code

🧬 Extract and analyze contributors info from git repos

All-in-one tool for managing vulnerability reports from AppSec pipelines

Writeup and exploit for CVE-2024-34740, integer overflow in Android's BinaryXmlSerializer to system_server file write and then to system_server code…

The Secure Coding Practices Quick-reference Guide from OWASP

Select Bugs From Binary Where Pattern Like CVE-1337-Days