
apex
AI-powered offensive security testing using autonomous agents, directly in your terminal.

AI-powered offensive security testing using autonomous agents, directly in your terminal.

Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports…

YAML-driven CLI scanner that detects exposed services, files, and folders on web endpoints. Designed for developers to integrate security checks into…

Read-only AI agent that queries your cloud, code, and runtime infrastructure to surface misconfigurations, leaked secrets, and privilege escalation…

The globalping probe code that runs on your hardware and connects to the global community network of probes


Python script to scan Git repos for interesting strings

A security testing Slackbot built with a Kubernetes backend on the Google Cloud Platform

Finding exposed secrets and personal data in GitLab

simply nodes and graphs

AI runtime inventory: discover shadow AI, trace LLM calls

Model Context Protocol server for autonomous vulnerability discovery

Faraday Agent Dispatcher launches any security tools and send results to Faradaysec Platform.

Log4j 漏洞本地检测脚本。 Scan all java processes on your host to check whether it's affected by log4j2 remote code execution vulnerability (CVE-2021-45046)

Cross-platform APK/DEX method finder with call chain tracing, ProGuard deobfuscation, and hidden API detection

Faraday's Command Line Interface

Aggregates Vulnerability Exploitability eXchange (VEX) documents from open-source projects. Organizes by PURL for automated security tool integration.

Async API security scanner in Rust for CORS, CSP, GraphQL, JWT, OpenAPI, and active API posture checks.