
osv-scanner
Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable…

Runtime-aware SCA — proves which CVEs are actually reachable, not just installed.

Offline checker for Thymeleaf CVE-2026-40477 / CVE-2026-41901 — tells you which of the two CVSS 9.0 SSTI flaws you are exposed to, and whether your…

CVE-2025-55182 Detector. Find which of your GitHub repositories are exposed to the critical React/Next.js RCE vulnerability and generate a clean…

CLI tool for analyzing Go package capabilities by tracing transitive calls to privileged standard library operations, enabling supply chain risk…

Hardening Script for Linux Servers/ Secure LAMP-LEMP Deployer/ CIS Benchmark

System utility that identifies and restarts daemons using outdated libraries after package upgrades to maintain security. Supports containers and…

Give coding agents a disposable Linux VM, not your laptop

Multi-source secret scanner detecting API keys, passwords, and PII across Git repos, S3 buckets, filesystems, Confluence, JIRA, Slack, and Google…

Vulnerability scanner based on vulners.com audit API

eBPF-powered Linux observability with AI incident detection. AGPL-3.0 licensed.

Automated static code analysis framework integrated with SonarQube for early vulnerability detection in source code by scanning Git repositories…

This is the community edition of GitLab's protocol fuzzing framework. This framework is based on Peach Fuzzer Professional with some features removed.

Audits GitLab projects against the CIS GitLab Benchmark via read-only API checks, generating JSON reports on compliance and hardening recommendations.

Suppress vulnerabilities applying Kubernetes context to scans

Forked from https://gitlab.alpinelinux.org/kaniini/secfixes-tracker

Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228