
bumblebee
Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software…

Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software…

Web-based vulnerability fix tracker for Alpine Linux that ingests security databases and NVD feeds to monitor CVE fix status across packages.

GitHub Actions Pipeline Enumeration and Attack Tool

A Rust CLI tool that recursively discovers Git repositories, captures state changes, generates diffs, extracts code elements with full snippets, and…

Aggregates Vulnerability Exploitability eXchange (VEX) documents from open-source projects. Organizes by PURL for automated security tool integration.

Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.

A high-performance automation tool designed to bridge the gap between technical web reconnaissance and executive reporting. Developed by **Adi…

Agent dispatcher that launches security tools and sends structured results to the Faraday platform. Supports custom executors and integrates with…

Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.

A fast port scanner written in go with a focus on reliability and simplicity.

A security testing Slackbot built with a Kubernetes backend on the Google Cloud Platform

GitHub Action to run httpx, a fast HTTP web server probing tool, for automated host discovery, service detection, and response analysis in CI/CD…

Maps GitHub organization relationships to identify lateral movement and privilege escalation paths via CI/CD pipelines and access controls, using…

Python script to scan Git repos for interesting strings

A tool to capture all the git secrets by leveraging multiple open source git searching tools