
mobileAudit
Django application that performs SAST and Malware Analysis for Android APKs

Django application that performs SAST and Malware Analysis for Android APKs

MCP server for reverse engineering Windows executables and binary formats. Combines static triage, Ghidra-assisted function recovery, plugin-driven…

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

CVE-2026-44289, CVE-2026-44290, CVE-2026-44291, CVE-2026-44292, CVE-2026-44294, CVE-2026-44295 - protobuf.js

Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

Vulnerability Static Analysis for Containers

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Pluggable linting tool to prevent committing credential.

Android security insights in full spectrum.

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Karonte is a static analysis tool to detect multi-binary vulnerabilities in embedded firmware

Docker labs + defensive scanner for fastjson remote-class-load RCE. fastjson 1.2.66-1.2.83: @JSONType resource probe (CVE-2026-16723). fastjson2…

Open-source secret scanner in Rust

FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.

Static binary analysis with Detect It Easy — 100% in your browser, no uploads.

Benchmark measuring AI models' ability to detect vulnerabilities in source code via real bug bounty cases with balanced recall and false-positive…

Isolated Docker lab and static scanner for CVE-2025-55182, with vulnerable/patched Next.js builds and PoC validation of RSC Flight deserialization.