
DongTai
Open-source Interactive Application Security Testing (IAST) tool that passively instruments Java applications to detect vulnerabilities and…

Open-source Interactive Application Security Testing (IAST) tool that passively instruments Java applications to detect vulnerabilities and…

wsb-detect enables you to detect if you are running in Windows Sandbox ("WSB")

Burp Suite extension to detect the Next.js / React Server Components (RSC) Remote Code Execution vulnerability (CVE-2025-55182 & CVE-2025-66478).

SafeForge is an open-source mobile app hub built on GitLab that enables developers to build, upload, and share applications in a secure, AI-verified…

Zeek plugin to detect and decrypt XOR-encrypted EXEs

Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware…

Rule-based Android malware scoring engine that analyzes APKs using static and dynamic analysis to detect vulnerabilities, identify malware families,…

CLI tool that audits OpenAPI specifications, validates them against best practices, and runs automated security tests to detect vulnerabilities and…

Android Antivirus which doesn't require root, adb, ca install and cloud with many features and ways to detect more zero-day malware

A tool that is used to hunt vulnerabilities in x64 WDM drivers

A dynamic unpacking tool

Hardware Sandbox Toolkit

This Python application scans for the CVE-2023-38831 vulnerability in WinRAR.

Detect Linux rootkits which use signals to elevate process privileges.

Log4j漏洞(CVE-2021-44228)的Burpsuite检测插件

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

Detect compiler-invented memory loads that turn secure C into TOCTOU vulnerabilities. Includes automated source audits, Unicorn-based binary…

Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.