
web-threat-mitigation
Hands-on lab on detecting and mitigating web app threats using OWASP ZAP, Burp Suite, and ModSecurity WAF (with OWASP CRS). Case study: Spring4Shell…

Hands-on lab on detecting and mitigating web app threats using OWASP ZAP, Burp Suite, and ModSecurity WAF (with OWASP CRS). Case study: Spring4Shell…

Java EE 7 application server with modular design, unified configuration, and management. Supports standalone and domain modes with built-in testing…

Patch: Privilege escalation via web UI (Cisco IOS XE)

⚙️ NGINX config generator on steroids 💉

Simple and flexible tool for managing secrets

Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices

OpenSSF Scorecard - Security health metrics for Open Source

OPNsense GUI, API and systems backend

This repository contains the scanner component for Greenbone Community Edition.

Centralized network visibility and continuous asset discovery. Monitor devices, detect change, and stay aware across distributed networks.

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…


GitHub App to set and enforce security policies

ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

Superseded by https://github.com/aquasecurity/trivy-operator

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

LLM powered fuzzing via OSS-Fuzz.