
CVE-2023-31606
Documentation of CVE-2023-31606: a ReDoS vulnerability in Redcloth gem's sanitize_html function, with root cause analysis, CVSS 7.5 scoring, and…

Documentation of CVE-2023-31606: a ReDoS vulnerability in Redcloth gem's sanitize_html function, with root cause analysis, CVSS 7.5 scoring, and…

Fix prototype pollution vulnerability (CVE-2023-26136) for tough-cookie package

Java utility library with patched CVE-2022-4244 vulnerability, providing common helper classes for I/O, reflection, and CLI argument parsing in…

CVE's I found. technical writeups, expolitation examples and fuzzing sessions walkthroughs


SAST CLI for scanning Java, JavaScript, and .NET applications plus AWS Lambda functions, detecting code vulnerabilities and over-permissive IAM…


AWS Serverless Security

Do You Know What's In Your Python Packages? A Tool for Visualizing Python Package Registry Security Audit Data

A static analyzer for Java, C, C++, and Objective-C

OpenAI's Codex Security CLI and TypeScript SDK for finding, validating, and fixing security vulnerabilities. npm:…

Bandit is a tool designed to find common security issues in Python code.

C++ python bytecode disassembler and decompiler

AI-powered bug bounty hunting toolkit that works with or without subscription.

AI-driven pentest harness with black-box, white-box, grey-box, host/cloud, and LLM red-team modes; validates findings with cross-model voting and…

This skill helps Claude write secure code and prevent common vulnerabilities.

RIPS - A static source code analyser for vulnerabilities in PHP scripts

Static code analysis tool based on Elasticsearch