
RiskAssessmentFramework
OWASP Static Application Security Testing (SAST) tool for analyzing code quality and vulnerabilities, designed for DevSecOps integration to help…

OWASP Static Application Security Testing (SAST) tool for analyzing code quality and vulnerabilities, designed for DevSecOps integration to help…

Pluggable vulnerability assessment and management platform that orchestrates static and dynamic analysis scanners for web, mobile, network, and code,…

Interactive Python call graph navigator for tracing code paths from user input to dangerous patterns, designed for security auditing and code…

Vulnerability Patterns Detector for C# and VB.NET

Semantic static analysis engine and query library for detecting security vulnerabilities in source code, enabling automated code scanning and CI/CD…

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

grep rough audit - source code auditing tool

Tool for reverse engineering of Angular applications

A static code analysis for WordPress (and PHP)

RIPS - A static source code analyser for vulnerabilities in PHP scripts

Command-line static analysis scanner that detects critical vulnerabilities in PHP and YAML source code using custom semgrep rules, with Jira and…

Static PHP code scanner that detects SQL injection, XSS, SSRF, LFI, command injection, insecure deserialization, and other web vulnerabilities in…

Automated static code analysis framework integrated with SonarQube for early vulnerability detection in source code by scanning Git repositories…

A variant analysis and visualisation tool that scans codebases for similar vulnerabilities

Static code analysis scanner for WordPress plugins and themes. Detects vulnerabilities like XSS and SQL injection via modular, extensible…

Automated security audit wrapper for .NET binaries: runs CAT.NET static analysis on all .NET binaries in a folder and tracks findings in a database.

CLI tool to scan codebases for quantum-vulnerable cryptography

AI-powered CLI tool that reviews code for security vulnerabilities, bugs, and anti-patterns using LLMs. Supports local and cloud providers, git…