
NeuroSploit
AI-driven pentest harness with black-box, white-box, grey-box, host/cloud, and LLM red-team modes; validates findings with cross-model voting and…

AI-driven pentest harness with black-box, white-box, grey-box, host/cloud, and LLM red-team modes; validates findings with cross-model voting and…

grep rough audit - source code auditing tool

OpenAnt from Knostic is the leading open source LLM-based vulnerability discovery product, helping defenders proactively find verified security flaws…

nodejsscan is a static security code scanner for Node.js applications.

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

A collection of my Semgrep rules to facilitate vulnerability research.

This skill helps Claude write secure code and prevent common vulnerabilities.

Linting tool for CloudFormation templates

PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container

Tool for reverse engineering of Angular applications

A security scanner for your LLM agentic workflows

Find regular expressions which are vulnerable to ReDoS (Regular Expression Denial of Service)

Specialized reasoning LLM for source-code vulnerability detection in C/C++ and Python, with dataset construction, SFT/DPO training, and…

Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable…

RIPS - A static source code analyser for vulnerabilities in PHP scripts

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

👮 👊 RegEx Denial of Service (ReDos) Scanner