
nginx-rift-check
Detects the CVE-2026-42945 rewrite pattern in nginx configs: rewrite with ? in the replacement plus an unnamed capture consumed in the same location

Detects the CVE-2026-42945 rewrite pattern in nginx configs: rewrite with ? in the replacement plus an unnamed capture consumed in the same location

A curated list of awesome iOS application security resources.

Script to audit GitHub Action Workflow files for potential vulnerabilities.

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers

Agent skill that audits a Rails codebase for CVE-2026-66066 (KindaRails2Shell) — Active Storage + libvips arbitrary file read / RCE, checking Rails…

ngxray — nginx config security scanner

A TypeScript package that provides AI-powered agents for Application Security (AppSec) tasks, built on top of the frontier models.

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

A vulnerable version of Rails that follows the OWASP Top 10

CVE-2026-42533 Nginx




Detect-only scanner for CVE-2026-42945 (NGINX Rift), a heap overflow in ngx_http_rewrite_module. Version detection + nginx.conf pattern analysis.…

Scan your NGINX configuration to determine whether it is affected by CVE-2026-42945.

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

Documentation and reverse engineering of reCAPTCHA