
aws-security-assessment-solution
An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

Open-source Interactive Application Security Testing (IAST) tool that passively instruments Java applications to detect vulnerabilities and…

Static and dynamic analysis tool that audits open-source packages for malicious, vulnerable, and risky attributes, with sandboxed installation to…

VisualCodeGrepper - Code security scanning tool.

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

A Blazing fast Security Auditing tool for Kubernetes

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application…

Self-hosted runtime control plane for AI agents. Observe or HITL approve or Block rogue tool calls before it executes: secret leaks, prompt…

Comprehensive Java vulnerability lab with vulnerable and fixed code, attack scenarios, source/sink audit notes, and secure coding guidance for…

a static analysis tool for finding vulnerabilities in C/C++ source code

Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports…

The universal GraphQL API and CSPM tool for AWS, Azure, GCP, K8s, and tencent.

Python client for Batfish, a network configuration analysis tool that validates security, reliability, and compliance by modeling network behavior…

Policy engine and EDR for AI agent fleets and developer workstations. Monitors tool calls, file access, network flows, and process execution with…

OWASP SecurityRAT (version 1.x) - Tool for handling security requirements in development

:owl::mag_right: A simple tool to audit your AWS/GCP infrastructure for misconfiguration or potential security issues with plugins integration

A multi-platform CI/CD vulnerability detection and attack automation tool for identifying security weaknesses in pipeline configurations.