
nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling…

Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling…


Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Curated collection of commands to validate leaked API keys from bug bounty programs and penetration tests, covering 80+ services including AWS,…

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and…

Audits Python environments, requirements files and dependency trees for known security vulnerabilities, and can automatically fix them

A library for detecting known secrets across many web frameworks

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

Web-based Source Code Vulnerability Scanner

Zed Attack Proxy Scripts for finding CVEs and Secrets.

Security scanner for CVE-2025-55182 - Critical RCE vulnerability in React Server Components. Scan npm/pnpm/yarn lockfiles, Docker images, SBOMs,…

Model Context Protocol server for autonomous vulnerability discovery

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…

Detect exposed API keys on GitHub commits.

Pre-launch security checklist for AI-generated apps (Lovable, v0, Bolt, Cursor). 69 checks covering Supabase RLS, exposed keys, and prompt injection.…