
kubesec
Security risk analysis for Kubernetes resources

Security risk analysis for Kubernetes resources

Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

VBScript & VBA source-to-source deobfuscator with partial-evaluation

CodeQL + DTrace = Memory Disclosure Vulnerabilities in XNU


Checklist and tools for increasing security of Apache Airflow

WPBookit <= 1.0.6 - Unauthenticated Stored Cross-Site Scripting

OpenAnt from Knostic is the leading open source LLM-based vulnerability discovery product, helping defenders proactively find verified security flaws…

A security scanner for your LLM agentic workflows

Detect compiler-invented memory loads that turn secure C into TOCTOU vulnerabilities. Includes automated source audits, Unicorn-based binary…

find hardcoded strings from source code

client-side prototype pullution vulnerability scanner

📦 :octocat: A GitHub Action that performs a security scan of your GitHub Actions.

Generates five .NET deserialization payload formats for CVE-2026-56158, delivers them over HTTP/SOAP/JSON endpoints, includes mock server, scanner,…

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

Unpack and deobfuscate VMProtect 2 protected binaries with an emulation-based VM explorer, handler profiler, and experimental LLVM recompiler for…