
zttp
Zero-trust SSH bastion proxy with Vault-backed key management, RBAC policy enforcement, full session recording, and admin TUI for auditable access to…

Zero-trust SSH bastion proxy with Vault-backed key management, RBAC policy enforcement, full session recording, and admin TUI for auditable access to…

A tool to manage vulnerable docker containers

A passive detection tool for identifying potential exposure to CVE-2026-24061 in GNU inetutils telnet installations

Scan and patch tool for CVE-2021-44228 and related log4j concerns.

Linting tool for CloudFormation templates

A Python library to parse, validate and create SPDX documents.

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

Security hardening toolkit for COBOL legacy systems — invisible Unicode detection, format boundary analysis, source transformation integrity

CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption


Draw.io libraries for threat modeling diagrams

Go library for safe YAML and shell generation, using syntax-aware templates to detect and block injection attacks via annotations for trusted data.

RIPS - A static source code analyser for vulnerabilities in PHP scripts

Matt.Net is a simple GUI wrapper around Microsoft's CAT.NET Code Auditing Tool