
Mobile-Security-Framework-MobSF
Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software…

Forked from https://gitlab.alpinelinux.org/kaniini/secfixes-tracker


HTTP Web Server probing

GitHub Actions Pipeline Enumeration and Attack Tool

Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.

Automated secret and leak detection scanner for GitHub and paste sites, with heuristic filtering, IOL enrichment via Shhgit/TruffleHog, and ELK-based…

Extend your recon with cloud power

Production-grade MCP server giving Claude 27 security intelligence tools across 21 APIs — CVE lookup, EPSS scoring, CISA KEV, MITRE ATT&CK, Shodan,…

OWASP Domain Protect - prevent subdomain takeover

Faraday Agent Dispatcher launches any security tools and send results to Faradaysec Platform.

Runtime behavioral analysis tool that sandboxes suspicious packages in Docker, traces syscalls with strace, maps process cascades into directed…

Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.

A security testing Slackbot built with a Kubernetes backend on the Google Cloud Platform

Python script to scan Git repos for interesting strings

AI-powered SAST scanner that finds auth bypass, IDOR, and logic bugs Semgrep/CodeQL miss. Free GitHub Action. Supports Python, JS/TS, Go, PHP, Ruby.

A fast port scanner written in go with a focus on reliability and simplicity.