
krane
Kubernetes RBAC static analysis & visualisation tool

Kubernetes RBAC static analysis & visualisation tool

Karonte is a static analysis tool to detect multi-binary vulnerabilities in embedded firmware


Real-time npm/PyPI supply-chain threat detection. Behavioral chain analysis, AST scanning, IOC feeds, and compound scoring engine.

Runtime-aware SCA — proves which CVEs are actually reachable, not just installed.

Evidence-driven C/C++ vulnerability remediation pipeline + http-parser case study (CVE-2024-22019-class). Python core, React 19 console, 17-test…

CVE-2026-53753 — Crawl4AI <0.8.7 unauthenticated RCE (AST sandbox escape via gi_frame.f_back). Lab + PoC, verified e2e.

Static analysis of 2 malicious Office documents on REMnux using oletools; identified CVE-2017-11882 and obfuscated macros.

FastGPT Python sandbox escape chain audit tool (CVE-2026-32128 related, v4.14.8 inspect chain)


Android Application Identifier for Packers, Protectors, Obfuscators and Oddities - PEiD for Android

A framework for automated extraction of static and dynamic features from Android applications

AI powered security analysis extension for Mobile Security Framework MobSF

A static + runtime security scanner for MCP (Model Context Protocol) servers

Workshop on firmware reverse engineering