
Archived
whispers
Identify hardcoded secrets in static structured text
code-analysisconfiguration-auditingdevsecops+4
506

GitHub Actions Pipeline Enumeration and Attack Tool

Exploits CVE-2026-42826 to enumerate and extract sensitive Azure DevOps data via unauthenticated REST API requests: pipeline YAML, variable groups,…

GitHub Action that scans ML model files for malicious code and security vulnerabilities

Poor (rich?) man's bug bounty pipeline https://dubell.io