
bumblebee
Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software…

Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software…

Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.

Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.

A tool to capture all the git secrets by leveraging multiple open source git searching tools

Maps GitHub organization relationships to identify lateral movement and privilege escalation paths via CI/CD pipelines and access controls, using…

A security testing Slackbot built with a Kubernetes backend on the Google Cloud Platform

Python script to scan Git repos for interesting strings

Agent dispatcher that launches security tools and sends structured results to the Faraday platform. Supports custom executors and integrates with…

Aggregates Vulnerability Exploitability eXchange (VEX) documents from open-source projects. Organizes by PURL for automated security tool integration.

A fast port scanner written in go with a focus on reliability and simplicity.

GitHub Action to run httpx, a fast HTTP web server probing tool, for automated host discovery, service detection, and response analysis in CI/CD…

GitHub Actions Pipeline Enumeration and Attack Tool

Web-based vulnerability fix tracker for Alpine Linux that ingests security databases and NVD feeds to monitor CVE fix status across packages.

A high-performance automation tool designed to bridge the gap between technical web reconnaissance and executive reporting. Developed by **Adi…

A Rust CLI tool that recursively discovers Git repositories, captures state changes, generates diffs, extracts code elements with full snippets, and…