
RatRace
A lightweight CLI tool for systematically detecting and exploiting race conditions in web applications, APIs, and modern services.

A lightweight CLI tool for systematically detecting and exploiting race conditions in web applications, APIs, and modern services.

Information about CVE-2026-27825 & CVE-2026-27826 discovered by Pluto Security and a bash script for identifying vulnerable mcp-atlassian instances…

Apache Kafka 4.1.0 (KRaft) with Keycloak OAuth2 authentication using Strimzi - bypasses CVE-2025-27817 URL allowlist restriction

AI Prompt Secret Scanner: local proxy and Claude Code hook that blocks secrets before they reach AI APIs

This tool creates a custom signature set on F5 WAF and apply to policies in blocking mode

Simple Ansible Playbook to mitigate against CopyFail (CVE-2026-31431) and DirtyFrag (CVE-2026-43284) vulnerabilities.

Shell-based vulnerability scanner for CVE-2026-45185 (Dead.Letter) in Exim MTA. Detects use-after-free in GnuTLS builds, checks version, TLS library,…

Read-only Azure DevOps enumeration tool that queries the REST API to surface projects, repositories, service connections, builds, pipeline secrets,…

A Rust CLI tool that recursively discovers Git repositories, captures state changes, generates diffs, extracts code elements with full snippets, and…

Docker mitigation for CVE-2026-31431 ('Copy Fail'). Includes Kubernetes templates as well.

A unified, security-first wire protocol for tool access and agent coordination. UAP eliminates CVE-2025-49596 and MCP tool-poisoning vulnerabilities…

Very simple Ansible playbook that scan filesystem for JAR files vulnerable to Log4Shell

Drop-in fix for the unpatched MCP STDIO command-injection flaw (CVE-2026-30623 family)

Detection script for CIFSwitch - CVE-2026-46243

dasel v3.3.1 packaged with Melange and shipped as a minimal apko image, patched for CVE-2026-33320

Ansible playbook to automate mitigation of CVE-2023-46747 (BIG-IP unauthenticated RCE) by applying F5's official script across multiple devices.

Multi-host UFW firewall dashboard — explains rules in plain English, detects security gaps, and provides connection diagnostics

AI-powered CLI tool that reviews code for security vulnerabilities, bugs, and anti-patterns using LLMs. Supports local and cloud providers, git…