
Awesome-Pentest
A list of awesome penetration testing tools and resources.

A list of awesome penetration testing tools and resources.

Linting tool for CloudFormation templates

Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your…

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

This skill helps Claude write secure code and prevent common vulnerabilities.

Checklist and tools for increasing security of Apache Airflow

Cursor plugin for Hono v4 (TypeScript edge web framework). 59 LLM regressions with BAD/CORRECT pairs. Pinned to hono ^4.12.19 (>= 4.9.7 for…

Scans Git repositories for hardcoded secrets, keys, and passwords using Gitleaks, integrating security into Bitbucket Pipelines with Code Insights…

Open-source, cross-platform, multi-purpose security auditing tool

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

AI-powered bug bounty hunting toolkit that works with or without subscription.

Vulnerability Assessment Scanner with Report Generation

AWS Serverless Security

SAST CLI for scanning Java, JavaScript, and .NET applications plus AWS Lambda functions, detecting code vulnerabilities and over-permissive IAM…

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…