
semgrep-rules
A collection of my Semgrep rules to facilitate vulnerability research.

A collection of my Semgrep rules to facilitate vulnerability research.

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Security risk analysis for Kubernetes resources

A security scanner for your LLM agentic workflows

Find regular expressions which are vulnerable to ReDoS (Regular Expression Denial of Service)

Static code analysis plugin for Android project. (Checkstyle, PMD)

RIPS - A static source code analyser for vulnerabilities in PHP scripts

OWASP ASST (Automated Software Security Toolkit) | A Novel Open Source Web Security Scanner.

Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable…

find hardcoded strings from source code

👮 👊 RegEx Denial of Service (ReDos) Scanner

Creosote is our solution to searching for the tarfile vulnerability described by CVE-2007-4559.

UT based automated fuzz driver generation


Curated Semgrep rule repository for GitLab SAST, providing static analysis patterns to detect security vulnerabilities across multiple programming…

client-side prototype pullution vulnerability scanner

The Secure Coding Practices Quick-reference Guide from OWASP
