
graudit
grep rough audit - source code auditing tool

grep rough audit - source code auditing tool

Apache RAT (Release Audit Tool) Gradle Plugin

Automated secret and leak detection scanner for GitHub and paste sites, with heuristic filtering, IOL enrichment via Shhgit/TruffleHog, and ELK-based…

🔍 Scan for CVE-2025-55182 risks in React Server Components with this non-intrusive tool that helps detect critical vulnerabilities in your…

A tool to capture all the git secrets by leveraging multiple open source git searching tools

Java testing framework for unit, integration, and end-to-end tests with annotations, data-driven testing, and parallel execution support.

secure multiplexed execution paths for agents - zero trust, zero setup, zero latency.

Proof-of-concept exploit for CVE-2024-21533, an argument injection vulnerability in the ggit npm package that allows arbitrary command execution via…

Proof-of-concept and detailed writeup for CVE-2026-51992, an SQL injection vulnerability in ClickHouse PostgreSQL dictionaries allowing arbitrary…

Scanner: CVE-2026-31802 npm tar path traversal — Python checker for arbitrary file write via npm pack

Proof-of-concept demonstrating a hardlink path traversal in the tar npm package, allowing overwrite of files outside the extraction directory via…

Static code analysis tool based on Elasticsearch

A static analysis tool for securing Go code

The CVE-2024-28397 vulnerability affects versions of js2py up to v0.74, a Python library that allows JavaScript code to be executed within the Python…

Proof-of-concept exploit for Jenkins Templating Engine plugin sandbox bypass (CVE-2025-31722) enabling remote code execution via malicious Groovy…

A tool written in Go that scans files & directories for the Follina exploit (CVE-2022-30190)

Scan a repo's .claude/ config (settings.json hooks, MCP servers, env, allowed-tools) for the RCE & API-key-exfiltration footguns (CVE-2025-59536,…

A tool written in Go that scans files & directories for the Follina exploit (CVE-2022-30190)