
DockerENT
The only open-source tool to analyze vulnerabilities and configuration issues with running docker container(s) and docker networks.

The only open-source tool to analyze vulnerabilities and configuration issues with running docker container(s) and docker networks.

Pentester-focused Docker registry tool to enumerate and pull images

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

Go-based CLI tool that scans codebases for launch readiness, detecting missing configuration, security hygiene issues, secret leaks, and integration…

Multi-threaded Go tool to detect nginx alias traversal vulnerabilities using heuristic and brute-force techniques for identifying vulnerable…

Security scanner for MCP servers. Grades auth, permissions, injection risks, and tool safety. The Lighthouse of agent security.

An anonymizer tool for replacing PII and similar data in dev/test databases copied from production

A tool that checks if a TorchServe instance is vulnerable to CVE-2023-43654

Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster

Automated Kubernetes cluster penetration testing tool that exploits misconfigurations in API, Kubelet, etcd, and Dashboard to achieve node takeover…

Automated brute-force tool for enumerating ServiceNow articles to detect misconfigurations that could leak sensitive data via unauthenticated access.

Python tool for safe archive handling, path traversal awareness, and secure extraction. Inspired by CVE-2025-8088.

CLI tool that verifies Docker images for CVE-2018-8115 by checking layers for malicious files, helping ensure safe pulls from Docker Hub.

Python 2 tool for scanning MongoDB and Redis databases to detect anonymous access. Supports bulk and IP range scanning for security assessments.

This tool creates a custom signature set on F5 WAF and apply to policies in blocking mode

CLI tool to audit Azure security posture, RBAC, NSGs, storage, identity, and encryption

A Rust CLI tool that recursively discovers Git repositories, captures state changes, generates diffs, extracts code elements with full snippets, and…

CVE-2026-23479 Redis Use-After-Free vulnerability detection tool