
njsscan
Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

a static analysis tool for finding vulnerabilities in C/C++ source code

SSMA - Simple Static Malware Analyzer [This project is not maintained anymore by me]

Educational demonstration of CVE-2007-4559 Python tarfile symlink attack with a script showing why os.path.realpath() fails to prevent extraction…

Ninja Reverse Engineering on Android APK packages

A Simple PE File Heuristics Scanners

[Moved to Codeberg] Simple local scanner for vulnerable log4j instances

Simple framework to extract "actionable" data from Android malware (C&Cs, phone numbers etc.)

Fast Go-based static scanner for detecting sensitive data (API keys, tokens, passwords) in JavaScript files and source code using regex patterns.

Standalone Python script to verify if a project is affected by CVE-2025-55182 (React2Shell). Checks package.json dependencies and performs optional…

TinyXML 2.6.2 with fixes for CVE-2021-42260 and CVE-2023-34194

simple application with a (unreachable!) CVE-2022-45688 vulnerability

This is a little plugin to copy disassembly in a way that is usable in YARA rules!

simple application with a CVE-2022-45688 vulnerability

Simple DDE object detector

Simple tool for scanning entire directories for attempts of CVE-2021-44228

simple application with a (unreachable!) CVE-2022-45688 vulnerability
