
cfripper
Library and CLI tool for analysing CloudFormation templates and check them for security compliance.

Library and CLI tool for analysing CloudFormation templates and check them for security compliance.

Apache RAT (Release Audit Tool) Gradle Plugin

Static analysis tool that scans Dockerfiles for insecure commands and configuration issues, providing actionable security notifications to harden…


Discover input surfaces and security issues in compiled .NET assemblies — without running them.

Kubernetes RBAC static analysis & visualisation tool

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

A multi-platform CI/CD vulnerability detection and attack automation tool for identifying security weaknesses in pipeline configurations.

Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers

HardeningMeter is an open-source Python tool carefully designed to comprehensively assess the security hardening of binaries and systems.

A lightweight, cross-platform CLI tool that scans your filesystem to detect exposed secrets, API keys, and tokens. Built with Go for maximum…

I have created AegisJava, a tool to fix (detect and mitigate) CVE-2025-30749.

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…


Gixy-Next: NGINX Configuration Security Scanner & Performance Checker

Git diff for SBOMs—compare CycloneDX, SPDX, and Syft documents, detect tampering, and gate CI.


FARO - Document Sensitivity Detector