
supply-chain-monitor
Automated supply chain security monitor that polls PyPI and npm registries, diffs new releases against predecessors, and uses LLM analysis to detect…

Automated supply chain security monitor that polls PyPI and npm registries, diffs new releases against predecessors, and uses LLM analysis to detect…

A Rust CLI tool that recursively discovers Git repositories, captures state changes, generates diffs, extracts code elements with full snippets, and…

Running OWASP cve-lite-cli against the pi monorepo: scan journey and key finding (vitest CVE-2026-47429).

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…


Vulnearability Report of the New Jersey official site

Vulnearability Report of the New Jersey official site

Vulnearability Report of the New Jersey official site

Vulnearability Report of the New Jersey official site

Vulnearability Report of the New Jersey official site

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

Server-Side Template Injection and Code Injection Detection and Exploitation Tool

A simple PoC for WordPress RCE (author priviledge), refer to CVE-2019-8942 and CVE-2019-8943.

Static security scanner for AI agent skill packages. Detects malicious SKILL.md files and bundled scripts before they run.

CVE-2023-21971 Connector/J RCE Analysis分析


Cargo exploit from CVE-2023-38497

Proof-of-concept for CVE-2024-43018: SQL injection in Piwigo 13.8.0 via unsanitized max_level and min_register parameters, enabling information…