
wpbullet
A static code analysis for WordPress (and PHP)

A static code analysis for WordPress (and PHP)

RIPS - A static source code analyser for vulnerabilities in PHP scripts

Detect compiler-invented memory loads that turn secure C into TOCTOU vulnerabilities. Includes automated source audits, Unicorn-based binary…

👮 👊 RegEx Denial of Service (ReDos) Scanner

UT based automated fuzz driver generation

Command-line static analysis scanner that detects critical vulnerabilities in PHP and YAML source code using custom semgrep rules, with Jira and…



Automated static code analysis framework integrated with SonarQube for early vulnerability detection in source code by scanning Git repositories…

Language server for YARA rule development, providing code completion, linting, formatting, navigation, and debugging support inside IDEs.

A variant analysis and visualisation tool that scans codebases for similar vulnerabilities

client-side prototype pullution vulnerability scanner

"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…


📦 :octocat: A GitHub Action that performs a security scan of your GitHub Actions.

Matt.Net is a simple GUI wrapper around Microsoft's CAT.NET Code Auditing Tool