
threat-finder
Runtime vulnerability scanner: finds CVEs in the services actually running on a host and ranks them by network exposure.

Runtime vulnerability scanner: finds CVEs in the services actually running on a host and ranks them by network exposure.

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…


Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable…

VEX Repository Specification

A security tool to detect malicious Go packages by verifying checksums in go.sum against the original source code

Octoscan is a static vulnerability scanner for GitHub action workflows.

OpenAnt from Knostic is the leading open source LLM-based vulnerability discovery product, helping defenders proactively find verified security flaws…


Vulnerability Assessment Scanner with Report Generation

Faraday's Command Line Interface

Security tools report parsers for Faradaysec.com

🐺 Vulfy – Fast Rust based package version scanner

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

Vulnerability Scan with Nuclei

Nuclear Pond is a utility leveraging Nuclei to perform internet wide scans for the cost of a cup of coffee.