
KubiScan
A tool to scan Kubernetes cluster for risky permissions

A tool to scan Kubernetes cluster for risky permissions

Scan codebases for quantum-vulnerable cryptography. Detect RSA, ECDSA, Ed25519, ECDH before Q-Day. CycloneDX CBOM + SARIF output.

A tool to capture all the git secrets by leveraging multiple open source git searching tools

Tool for advanced mining for content on Github

Poor (rich?) man's bug bounty pipeline https://dubell.io

Hunting for passwords with deep learning

One way to continuously monitor sensitive information that could be exposed on Github

Extracts secrets (passwords, API keys, tokens) from WARC web archives using Gitleaks rules. Supports HTTP, S3, local files, and compressed archives…

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

Find, verify, and analyze leaked credentials

Aurea is an open-source, AI-powered platform that secures infrastructure-as-code (IaC) across Terraform, Kubernetes, Docker, and Ansible. It…

The Most Comprehensive Docker Security Scanner

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

Scans Docker Hub images using regex patterns to extract exposed secrets, private keys, and authentication tokens for security auditing and incident…

Parse and visualize /proc/self/environ on compromised Linux boxes — categorizes env vars by tech stack (AWS, Django, Rails, NodeJS, MySQL, K8s,…

Open-source secret scanner in Rust

Extracts all the chart lists from ChartMuseum