
enject
enject: Hide .env secrets from prAIng eyes: secrets live in local encrypted stores (per project) and are injected directly into apps at runtime,…

enject: Hide .env secrets from prAIng eyes: secrets live in local encrypted stores (per project) and are injected directly into apps at runtime,…

Kubernetes DaemonSet that hot-patches JVMs to mitigate Log4j2 vulnerabilities (CVE-2021-44228, CVE-2021-45046) by disabling JNDI lookups, providing…

Buildpack providing a workaround for CVE-2021-44228 (Log4j RCE exploit)

An open-source, next-generation "runc" that empowers rootless containers to run workloads such as Systemd, Docker, Kubernetes, just like VMs.

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)

Your agent is a security risk, so treat it like one. yoloAI does AI agent sandboxing right.

Apache RAT (Release Audit Tool) Gradle Plugin

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

Hubble is a modular, open-source security compliance framework. The project provides on-demand profile-based auditing, real-time security event…

Static code analysis plugin for Android project. (Checkstyle, PMD)

OWASP project defining an AI Bill of Materials (AIBOM) standard to document AI/ML components, dependencies, and supply chain risks for AI security…

Generates CycloneDX SBOMs and dependency scanning reports to identify project dependencies, licenses, and vulnerabilities within GitLab CI/CD…

Authorized security-research lab reproducing CVE-2026-31852 (jellyfin/jellyfin-ios pull_request_target pwn in code-quality.yml) — isolated snapshot,…

A macOS app to scan Xcode project files for possible security issues.

Sample project that uses VEX to supress CVE-2024-29415.

Software composition analysis tool that detects publicly disclosed vulnerabilities in project dependencies using CPE matching, generating detailed…