
trivy
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

Automated testing to find logic and performance bugs in database systems

Find open databases - Powered by Binaryedge.io

Static analysis scanner for infrastructure-as-code that detects security vulnerabilities, compliance violations, and misconfigurations across…

Automated SQL injection detection and exploitation tool for extracting database information from web applications, supporting multiple injection…

Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).

Intentionally vulnerable Golang programs exposing web, gRPC, and database/sql flaws for security training, vulnerability discovery, and remediation…

Minimal security backport for CVE-2026-8726 in georgringer/news 8.6.0

This repo contains my python script version of CVE-2025-14847 (MongoBleed)

Proof-of-concept exploit for CVE-2024-55656, an integer overflow in RedisBloom leading to heap-based OOB read/write and remote code execution in…

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…