
Photon
Incredibly fast crawler designed for OSINT.

Incredibly fast crawler designed for OSINT.

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Snyk CLI scans and monitors your projects for security vulnerabilities.

Prevents you from committing secrets and credentials into git repositories

🐸 Identify anything. pyWhat easily lets you identify emails, IP addresses, and more. Feed it a .pcap file or some text and it'll tell you what it…

Find leaked secrets via github search

secure multiplexed execution paths for agents - zero trust, zero setup, zero latency.

OSINT reconnaissance tool for network discovery, subdomain enumeration, IP enrichment, and secret detection via certificate logs, Shodan, and GitHub…

SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix,…

Curated collection of bug bounty tips, one-liners, and automation workflows for recon, fuzzing, and web exploitation, with private nuclei templates…

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Concurrent CLI tool for discovering secrets, API keys, and links in JavaScript files during web reconnaissance, with custom regex pattern support and…

Ephemeral microVM sandbox for AI agents with network allowlisting, secret injection via MITM proxy, and VM-level isolation. Boots in under a second,…

A library for detecting known secrets across many web frameworks

:knife: Scan memory for secrets and more. Maybe eventually a full /proc toolkit.

Find exposed API keys based on RegEx and get exploitation methods for some of keys that are found