
gitgalaxy
AST-free heuristic knowledge graph engine for deep repository intelligence and zero-trust security scanning. Integrates as a GitLab CI/CD component,…

AST-free heuristic knowledge graph engine for deep repository intelligence and zero-trust security scanning. Integrates as a GitLab CI/CD component,…

Autonomous security research framework integrating static analysis, binary analysis, fuzzing, LLM-powered vulnerability validation, exploit…

Vulnerability Patterns Detector for C# and VB.NET

A static code analysis for WordPress (and PHP)

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

Checklist and tools for increasing security of Apache Airflow

Curated database of Apple internal artifacts (entitlements, frameworks, device versions) with API, CLI, and WebUI for iOS/macOS security research and…

Easy setup of static analysis tools for Android and Java projects.

Language server for YARA rule development, providing code completion, linting, formatting, navigation, and debugging support inside IDEs.

Python Command-Line Ghidra Decompiler

NCC Code Navigator

find hardcoded strings from source code


obride with CVE-2018-25075

解决网络安全漏洞

Semgrep rules that flag header-trust auth bypass patterns (CVE-2025-29927 class). Companion to bk-security.github.io.
