
web-server-audit_CVE-2026-42945
Trigger-aware web server CVE audit for nginx and Apache. Goes beyond version matching by checking whether the vulnerable code path is actually…

Trigger-aware web server CVE audit for nginx and Apache. Goes beyond version matching by checking whether the vulnerable code path is actually…

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

Fast and powerful SSL/TLS scanning library.

Generate firewall ACLs for Cisco, Juniper, Palo Alto, and more from a single YAML policy language via CLI or Python API.

Audits Python environments, requirements files and dependency trees for known security vulnerabilities, and can automatically fix them

Python client for Batfish, a network configuration analysis tool that validates security, reliability, and compliance by modeling network behavior…

Policy enforcement, zero-trust identity, execution sandboxing, and audit logging for autonomous AI agents. Covers 10/10 OWASP Agentic Top 10 with…

SecureAI-Scan is a CLI tool that scans TypeScript and JavaScript codebases for security issues specific to AI-powered apps — prompt injection, MCP…

Certbot is EFF's tool to obtain certs from Let's Encrypt and (optionally) auto-enable HTTPS on your server. It can also act as a client for any…

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

🐍 🔍 GuardDog is a CLI tool to Identify malicious PyPI and npm packages

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application…

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Static and dynamic analysis tool that audits open-source packages for malicious, vulnerable, and risky attributes, with sandboxed installation to…

A Python library to parse, validate and create SPDX documents.

OWASP Kubernetes security and compliance tool [WIP]

Static and dynamic analysis tool for detecting malicious code, suspicious binaries, and privacy violations

Port Scanner with Docker & Prometheus + Grafana integration. A tool for network auditing with multithreading support and real-time monitoring.