
DevSecOpsGuideline
The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

Autonomous security research framework integrating static analysis, binary analysis, fuzzing, LLM-powered vulnerability validation, exploit…

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

Finds API routes carrying weaker authorization than their siblings. Recovered CVE-2026-45316 from source. Includes the negative results.

BianryNinja plugin for identifying vulnerabilities in decompiled binaries with both programmatic scans and LLM support.

Cursor plugin for Hono v4 (TypeScript edge web framework). 59 LLM regressions with BAD/CORRECT pairs. Pinned to hono ^4.12.19 (>= 4.9.7 for…

This skill helps Claude write secure code and prevent common vulnerabilities.

CVE's I found. technical writeups, expolitation examples and fuzzing sessions walkthroughs

A security scanner for your LLM agentic workflows

Unpack and deobfuscate VMProtect 2 protected binaries with an emulation-based VM explorer, handler profiler, and experimental LLVM recompiler for…

UT based automated fuzz driver generation

CodeQL + DTrace = Memory Disclosure Vulnerabilities in XNU

Find regular expressions which are vulnerable to ReDoS (Regular Expression Denial of Service)