
codex-security
OpenAI's Codex Security CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities. npm:…

OpenAI's Codex Security CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities. npm:…

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Bandit is a tool designed to find common security issues in Python code.

a static analysis tool for finding vulnerabilities in C/C++ source code

Indexes C/C++ build artifacts into a queryable whole-program database, exposing AST, token, and IR-level APIs for code auditing and vulnerability…

Semgrep rules that flag header-trust auth bypass patterns (CVE-2025-29927 class). Companion to bk-security.github.io.

AI-powered CLI tool that reviews code for security vulnerabilities, bugs, and anti-patterns using LLMs. Supports local and cloud providers, git…

Language server for YARA rule development, providing code completion, linting, formatting, navigation, and debugging support inside IDEs.

Batch-decompile binaries with Ghidra from the command line, generating per-function C files, callgraphs, BSim signatures, and optional SAST results…

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

Creosote is our solution to searching for the tarfile vulnerability described by CVE-2007-4559.

A static code analysis for WordPress (and PHP)

Do You Know What's In Your Python Packages? A Tool for Visualizing Python Package Registry Security Audit Data

A variant analysis and visualisation tool that scans codebases for similar vulnerabilities
