
njsscan
Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

Proof-of-concept and static analysis toolkit for finding speculative race condition (SCUAF) gadgets in Linux kernel. Includes 1200+ gadget dataset.

Vulnerability Assessment Scanner with Report Generation

Autonomous security research framework integrating static analysis, binary analysis, fuzzing, LLM-powered vulnerability validation, exploit…

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your…

Automated static code analysis framework integrated with SonarQube for early vulnerability detection in source code by scanning Git repositories…

BianryNinja plugin for identifying vulnerabilities in decompiled binaries with both programmatic scans and LLM support.

Open-source, cross-platform, multi-purpose security auditing tool

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

Web-based Source Code Vulnerability Scanner

Static analysis scanner for infrastructure-as-code that detects security vulnerabilities, compliance violations, and misconfigurations across…

nodejsscan is a static security code scanner for Node.js applications.

A security scanner for your LLM agentic workflows

Tree-sitter based static vulnerability scanner with pattern matching and taint-flow analysis for multi-language source code. Outputs findings as…

OWASP ASST (Automated Software Security Toolkit) | A Novel Open Source Web Security Scanner.

Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable…

Security scanner for AI/ML model files. Detects malicious code, backdoors, and vulnerabilities before deployment

👮 👊 RegEx Denial of Service (ReDos) Scanner