
git-alerts
Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files

Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files

Script to audit GitHub Action Workflow files for potential vulnerabilities.

A simple file-based scanner to look for potential AWS access and secret keys in files

SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)

Open-source deception platform that turns any Linux machine into a high-signal canary. Deploy tripwire sensors on files, ports, and network services…

Extract a slice of your production database to reproduce bugs locally. Point dbslice at a record, it follows foreign keys and gives you a complete,…

Lightweight CLI tool that runs AI coding agents inside isolated Bubblewrap sandboxes with strict filesystem, network, and credential isolation to…

Firecracker made simple. Spin up secure microVMs in milliseconds, from install to interactive shell in one command.

Modular framework to detect and prevent dependency confusion attacks by analyzing package manifests across multiple sources and package management…

Create a VPS on Google Cloud Platform or Digital Ocean easily with Offensive Docker included to launch assessment to the targets.

Faraday Agent Dispatcher launches any security tools and send results to Faradaysec Platform.

Vimana is a modular security framework for auditing Python APIs and Web applications. The plugin-based architecture enables security professionals to…

eBPF-based runtime security agent for Kubernetes that detects unknown processes and file changes, enforces pre-registered constraints, and automates…

Curated Semgrep rule repository for GitLab SAST, providing static analysis patterns to detect security vulnerabilities across multiple programming…

Scan systems and docker images for potential log4j vulnerabilities. Able to patch (remove JndiLookup.class) from layered archives. Will detect…

A simple server to host the valid, revoked, and expired certificates required by Section 2.2 of the CA/Browser Forum Baseline Requirements.

Ansible role to configure redirectors for red team C2

SecureAI-Scan is a CLI tool that scans TypeScript and JavaScript codebases for security issues specific to AI-powered apps — prompt injection, MCP…