
check-spelling
Spelling checker action to check spelling in repositories / pull requests / commits

Spelling checker action to check spelling in repositories / pull requests / commits

Cross-platform APK/DEX method finder with call chain tracing, ProGuard deobfuscation, and hidden API detection

Shields against supply-chain, slopsquatting, and typosquatting attacks from dependencies and code.

Automated scanner that detects Unity runtime injection vulnerability CVE-2025-59489 in Android APKs by extracting Unity version and checking against…

Checkov PoC: arbitrary code execution through auto-loaded configuration and unsigned external Python checks.

Security-research lab reproducing CVE-2021-4281 (GHSA-3796-3f93-cfvx): shell command injection via PR head-branch name in…

Security-research lab: reproduction of CVE-2026-41249 (GHSA-q58j-g3f4-h26h) — pull_request_target pwn request in .github/workflows/static.yml,…

Security-research lab: CVE-2026-47172 (workflow_run pwn request in deploy.yaml) — flattened snapshot of duck-organization/questbot at 1903b2f

Publish SBOM attestation

Detect, assess, and respond to supply chain attacks across npm/yarn and Python (pip/poetry/uv). Claude Code skill + standalone scripts. Built during…

CVE-2025-53652: Jenkins Git Parameter Analysis

Android CVE-2024-0044, 43093, 23706 zafiyet analizi ve PoC lab ortamı

Spring Boot app with log4j 2.14.1 (CVE-2021-44228) — VulnFix agent test target

A lightweight, recursive Bash script to detect Next.js and React Server DOM versions vulnerable to CVE-2025-55182 (React2Shell) in local projects.

Detects and fixes CVE-2025-55182 (React2Shell) in React Server Components and Next.js apps. Scans package versions, suggests safe upgrades, and…

A GitHub Action to find Unicode control characters using the Red Hat diagnostic tool https://access.redhat.com/security/vulnerabilities/RHSB-2021-007…

A simple project to check coverage of Log4J vuln CVE-2021-44228 (and related)

Reproduction of CVE-2020-36518 in Spring Boot 2.5.10