
DockerSpy
Scans Docker Hub images using regex patterns to extract exposed secrets, private keys, and authentication tokens for security auditing and incident…

Scans Docker Hub images using regex patterns to extract exposed secrets, private keys, and authentication tokens for security auditing and incident…

Finding exposed secrets and personal data in GitLab

Mobile Reconnaissance Framework is a powerful, lightweight and platform-independent offensive mobile security tool designed to help hackers and…

Model Context Protocol server for autonomous vulnerability discovery

Shell scripts to clone and mirror Git repositories, compute deltas, and run gitleaks to detect secrets hidden in deleted or reset commits.

layerleak the Docker Hub Secret Scanner

Zero-Knowledge Credential Sharing

Check rclone config files for insecure passwords

[Just for fun] Find exposed AWS keys (VALID KEYS ONLY) on github


Detect exposed API keys on GitHub commits.

Offline, read-only hardening check for a self-hosted OpenClaw install — gateway exposure, auth, CVE-2026-25253. Never prints secrets, makes no…

A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.

The simple PoC of CVE-2023-27587

Detection & remediation toolkit for the Miasma / Shai-Hulud worm and CVE-2026-35603 (AI-agent/IDE config injection)

🛡️ One-command scanner for CVE-2026-45321 — TanStack npm supply-chain attack

CVE-2025-55182 Detector. Find which of your GitHub repositories are exposed to the critical React/Next.js RCE vulnerability and generate a clean…

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…