
quark-engine
Rule-based Android malware scoring engine that analyzes APKs using static and dynamic analysis to detect vulnerabilities, identify malware families,…

Rule-based Android malware scoring engine that analyzes APKs using static and dynamic analysis to detect vulnerabilities, identify malware families,…

Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

SafeForge is an open-source mobile app hub built on GitLab that enables developers to build, upload, and share applications in a secure, AI-verified…

Android Antivirus which doesn't require root, adb, ca install and cloud with many features and ways to detect more zero-day malware

Detect compiler-invented memory loads that turn secure C into TOCTOU vulnerabilities. Includes automated source audits, Unicorn-based binary…

Symbolic execution tool

A tool that is used to hunt vulnerabilities in x64 WDM drivers

Burp Suite extension to detect the Next.js / React Server Components (RSC) Remote Code Execution vulnerability (CVE-2025-55182 & CVE-2025-66478).

Detect Linux rootkits which use signals to elevate process privileges.

Open-source Interactive Application Security Testing (IAST) tool that passively instruments Java applications to detect vulnerabilities and…

This Python application scans for the CVE-2023-38831 vulnerability in WinRAR.

CLI tool that audits OpenAPI specifications, validates them against best practices, and runs automated security tests to detect vulnerabilities and…

Hardware Sandbox Toolkit

Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware…

Zeek plugin to detect and decrypt XOR-encrypted EXEs

A dynamic unpacking tool

wsb-detect enables you to detect if you are running in Windows Sandbox ("WSB")