


Check for and remediate conditions that make an IOS-XE device vulnerable to CVE-2023-20198

Ansible playbook for patching CVE-2024-3094

log4j mitigation work

An Ansible Playbook to mitigate the risk of RCE (CVE-2024-6387) until platforms update OpenSSH to a non-vulnerable version.

Mitigation Guide for CVE-2024-6387 in OpenSSH

Puppet Module to help fix and migrate a Puppet deployment (CVE-2011-3872)

GitHub Actions Pipeline Enumeration and Attack Tool

Static analysis scanner for infrastructure-as-code that detects security vulnerabilities, compliance violations, and misconfigurations across…

Audits Python environments, requirements files and dependency trees for known security vulnerabilities, and can automatically fix them

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and…

Scans Software Bill of Materials (SBOMs) for security vulnerabilities

Searches through git repositories for high entropy strings and secrets, digging deep into commit history


Continuous fuzzing solution integrated into CI workflows to find vulnerabilities in code changes and batch runs, supporting multiple languages and CI…