
FACT_core
Firmware Analysis and Comparison Tool

Firmware Analysis and Comparison Tool

An easy-to-learn/use static analysis framework for Java and Android

Burp Suite extension for JavaScript static analysis: extracts API endpoints, URLs, secrets, and emails with noise filtering for web security testing.

Curated collection of LLVM security resources covering binary lifting, code obfuscation, static analysis, symbolic execution, sanitizers, and…

A security focused static analysis tool for Android and Java applications.

Security-focused static analysis for the Phoenix Framework

BARF : A multiplatform open source Binary Analysis and Reverse engineering Framework

Xori is an automation-ready disassembly and static analysis library for PE32, 32+ and shellcode

IDA plugin and loader for UEFI firmware analysis and reverse engineering automation

A Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Applications

Enterprise-grade static code analysis platform with multi-language support, security vulnerability detection, code quality metrics, and DevOps…

Security risk analysis for Kubernetes resources

Binary code static analyser, with IDA integration. Performs value and taint analysis, type reconstruction, use-after-free and double-free detection

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

Static taint analysis platform for Android apps that detects vulnerabilities and compliance issues using customizable rule-based scanning and…

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

A self-hosted sandbox for red teams to test payloads against modern detection before deployment. MCP integration lets an LLM agent drive analysis end…

mobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and…