
awesome-wazuh
🛡️Awesome lists about all kinds of interesting topics of Wazuh XDR/SIEM

🛡️Awesome lists about all kinds of interesting topics of Wazuh XDR/SIEM

Script to audit GitHub Action Workflow files for potential vulnerabilities.

Git diff for SBOMs—compare CycloneDX, SPDX, and Syft documents, detect tampering, and gate CI.

Nuclei is a fast tool for configurable targeted vulnerability scanning based on templates offering massive extensibility and ease of use.

查出 Spring Boot 内嵌 Tomcat 的真实版本(pom 里没有),并对每条 2026 年 CVE 同时给出 ASF 官方评级与 GitHub 评级、触发条件、以及这条会不会进 Dependabot 告警 CVE-2026-41293


Mitigate CVE-2018-6389 WordPress load-scripts / load-styles attacks

Workaround for disabling the CLI to mitigate SECURITY-3314/CVE-2024-23897 and SECURITY-3315/CVE-2024-23898

Verified tool registry manager. Manages developer toolchains from git-based registries.

OPNsense GUI, API and systems backend

This repository contains the scanner component for Greenbone Community Edition.


ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

Operator to streamline renovate executions in Kubernetes

sprint encode (plan text) get enc password

Rule-based linter for OpenSSH client config files that detects duplicate hosts, missing identity files, weak algorithms, wildcard ordering issues,…

CVE-2026-42945 NGINX 堆溢出漏洞扫描与验证工具

Agent skill that audits a Rails codebase for CVE-2026-66066 (KindaRails2Shell) — Active Storage + libvips arbitrary file read / RCE, checking Rails…