
rev-dep
Dependency analysis and optimization toolkit for modern JavaScript and TypeScript codebases. Enforce dependency graph hygiene and remove unused code…

Dependency analysis and optimization toolkit for modern JavaScript and TypeScript codebases. Enforce dependency graph hygiene and remove unused code…

This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports

Static analysis of malicious Python code

Static analysis tool that scans source code for hardcoded secrets, API keys, and credentials using semantic understanding of code context.

Regex-based scanner for detecting hard-coded credentials in codebases, designed for CI/CD integration with suppression comment support and low…

Open-source threat intelligence platform for malware and observable analysis. Enriches IPs, domains, URLs, and hashes with external sources, performs…

An extensible, deterministic static‑analysis engine that extracts high‑signal IOCs from PE binaries and text, built for SOC automation and modern…

Local Bytecode Scanner for the Log4JShell Vulnerability (CVE-2021-44228)

We would like to request that all contributors please clone a *fresh copy* of this repository since the September 21st maintenance.

Pre-install security for AI agents, npm packages, and MCP servers. Zero-dep local static analysis; normal scans never execute package code.

Generate bulk YARA rules from YAML input

Proxy server that wraps MCP servers with behavioral profiling, security scanning, risk gating, and safe execution. Detects prompt injection,…

A doggo that helps look for security issues in your repositories.

Log4j Shield - fast ⚡, scalable and easy to use Log4j vulnerability CVE-2021-44228 finder and patcher


Security testing framework for repositories and source code

KrustyLoader Analysis

Static security analysis for npm packages. Detects obfuscated code, malicious patterns, and known vulnerabilities before installation.