
horusec
Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

find hardcoded strings from source code

Python Command-Line Ghidra Decompiler

A list of awesome penetration testing tools and resources.

NCC Code Navigator

AST-based Python code transformation & deobfuscation framework


Policy-governed LLMSecOps framework providing AST-based SAST, secret scanning, supply-chain and multi-cloud CSPM checks, AI-BoM generation, and CI/CD…

Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

Code-quality and static-analysis platform with quality gates, multi-language scanning, and security-focused rules to detect vulnerabilities and…

Bandit is a tool designed to find common security issues in Python code.

An extensible multilanguage static code analyzer.

C++ python bytecode disassembler and decompiler

AI-powered bug bounty hunting toolkit that works with or without subscription.

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.