
CVE-2026-31431-mitigation-suite
Kernel-runtime defense framework for AF_ALG vulnerabilities, featuring eBPF socket tracing, Ansible hardening, and a crypto auditor for drift…

Kernel-runtime defense framework for AF_ALG vulnerabilities, featuring eBPF socket tracing, Ansible hardening, and a crypto auditor for drift…

Protection against Model Serialization Attacks

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

CLI for generating, analyzing, merging, diffing, validating, signing, and converting CycloneDX SBOMs across JSON, XML, Protobuf, CSV, and SPDX…

Open source solutions for SOC2, GDPR, and ISO27001

Runtime vulnerability scanner: finds CVEs in the services actually running on a host and ranks them by network exposure.

Security hardening toolkit for COBOL legacy systems — invisible Unicode detection, format boundary analysis, source transformation integrity

Community Detection Signature Build and Distribution Pipeline for YARA, Suricata, Snort and Sigma

Purple Team Exercise Framework

Draw.io libraries for threat modeling diagrams

Go library for safe YAML and shell generation, using syntax-aware templates to detect and block injection attacks via annotations for trusted data.

👮 👊 RegEx Denial of Service (ReDos) Scanner

VEX Repository Specification

Automated vulnerability data aggregator that collects advisories from NVD, OSV, Alpine, Red Hat, and 20+ other sources into a unified parsable format…

Executable security regression testing for agentic applications and MCP-integrated systems.

Structured curriculum for learning application security, covering secure coding, threat modeling, and DevSecOps practices. Designed for self-paced…


A TypeScript package that provides AI-powered agents for Application Security (AppSec) tasks, built on top of the frontier models.