
Creosote
Creosote is our solution to searching for the tarfile vulnerability described by CVE-2007-4559.

Creosote is our solution to searching for the tarfile vulnerability described by CVE-2007-4559.

CodeQL + DTrace = Memory Disclosure Vulnerabilities in XNU

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…


Checklist and tools for increasing security of Apache Airflow

📦 :octocat: A GitHub Action that performs a security scan of your GitHub Actions.

CLI tool to scan codebases for quantum-vulnerable cryptography

Processes SARIF output from static analysis tools to detect and redact hard-coded secrets in source code, creating a clean copy without the original…

WPBookit <= 1.0.6 - Unauthenticated Stored Cross-Site Scripting

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

Linting tool for CloudFormation templates

Unpack and deobfuscate VMProtect 2 protected binaries with an emulation-based VM explorer, handler profiler, and experimental LLVM recompiler for…


Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.