
Mobile-Security-Framework-MobSF
Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

One command to fix CVE-2025-66478 (React 2 Shell RCE) in your Next.js / React RSC app.

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Vulnerable app with examples showing how to not use secrets

Easy setup of static analysis tools for Android and Java projects.

Web-based Source Code Vulnerability Scanner

GitHub App to set and enforce security policies

Run Coding Agents in Sandboxes. Control Them Over HTTP. Supports Claude Code, Codex, OpenCode, and Amp.

Easily create full virtual machines that are sandboxed for development or computer use models.

Automated scanner that detects Unity runtime injection vulnerability CVE-2025-59489 in Android APKs by extracting Unity version and checking against…

A doggo that helps look for security issues in your repositories.

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and…

Static code analysis plugin for Android project. (Checkstyle, PMD)

Jenkins plugin for automated mobile app testing via Perfecto cloud, managing secure tunnel connections and app uploads within CI/CD pipelines.

An app that helps you monitor your Kubernetes cluster, debug critical deployments & gives recommendations for standard practices

Cross-platform APK/DEX method finder with call chain tracing, ProGuard deobfuscation, and hidden API detection

CVE-2016-4468

Hands-on lab on detecting and mitigating web app threats using OWASP ZAP, Burp Suite, and ModSecurity WAF (with OWASP CRS). Case study: Spring4Shell…