
ai-code-review
AI-powered CLI tool that reviews code for security vulnerabilities, bugs, and anti-patterns using LLMs. Supports local and cloud providers, git…

AI-powered CLI tool that reviews code for security vulnerabilities, bugs, and anti-patterns using LLMs. Supports local and cloud providers, git…

Advanced SQL Injection Scanner with AI-powered analysis, ethical compliance framework, and professional reporting.

Intentionally vulnerable Log4j 2.14.1 demo for Sysdig CNAPP scanning (CVE-2021-44228)

EXPOSURE demo target (invokeai) — HOT baseline for CVE-2024-10821. See README.

Running OWASP cve-lite-cli against the pi monorepo: scan journey and key finding (vitest CVE-2026-47429).

Synthetic demo target for EXPOSURE — CVE-2018-21268 (traceroute) + CVE-2018-3757 (pdf-image)

OWASP teaching modules covering application security fundamentals including risk management, secure software development, and operations security for…

Seal Security example — vulnerable pip app (PyYAML CVE-2020-14343) remediated to sealed versions; GitHub Actions + Jenkins integration

Test repo: simulates CVE-2025-30066 style compromised GitHub Action (for security research/testing chainradar)

CVE-2025-53652: Jenkins Git Parameter Analysis

Slides for Developing Secure Software in 2024 at CanSecWest

Spring Boot app with log4j 2.14.1 (CVE-2021-44228) — VulnFix agent test target

Security toolkit to detect CVE-2025-55182 (React2Shell) vulnerability

A lightweight, recursive Bash script to detect Next.js and React Server DOM versions vulnerable to CVE-2025-55182 (React2Shell) in local projects.

Detection of the React Server Actions Exploit vector – CVE-2025-55182 / CVE-2025-66478

OpsGuard eliminates the "3 AM PagerDuty" nightmare, specifically protecting against threats like the recent CVE-2025-55184 (Next.js DoS)

npm repo with ejs CVE-2022-29078 (CVSS 9.8, EPSS 32%) for Dependabot automerge testing
