
StaCoAn
StaCoAn is a crossplatform tool which aids developers, bugbounty hunters and ethical hackers performing static code analysis on mobile applications.

StaCoAn is a crossplatform tool which aids developers, bugbounty hunters and ethical hackers performing static code analysis on mobile applications.

Fix prototype pollution vulnerability (CVE-2023-26136) for tough-cookie package

Clickbait. The CVE is AI slop.

Code-quality and static-analysis platform with quality gates, multi-language scanning, and security-focused rules to detect vulnerabilities and…

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

VisualCodeGrepper - Code security scanning tool.

Curated Ghidra scripts to automate reverse engineering and vulnerability analysis: locate insecure functions, extract decompiler pseudocode, fix…

Processes SARIF output from static analysis tools to detect and redact hard-coded secrets in source code, creating a clean copy without the original…

MCP server that runs SAST scans on local codebases and returns findings with severity and fixes, enabling AI assistants to perform security analysis…

A Bitbucket Pipe to trigger SonarCloud analysis

Java utility library with patched CVE-2022-4244 vulnerability, providing common helper classes for I/O, reflection, and CLI argument parsing in…

Java source code generator that creates calling classes for Oracle PL/SQL package procedures, supporting various parameter types and automatic type…

Open-source, cross-platform, multi-purpose security auditing tool

C++ python bytecode disassembler and decompiler

AI-powered bug bounty hunting toolkit that works with or without subscription.

find hardcoded strings from source code

VBScript & VBA source-to-source deobfuscator with partial-evaluation

A security-hardened fork of "Simply Show Hooks". Replaces the compromised original (CVE-2024-6297) and patches unlisted Cross-Site Scripting (XSS)…