
call_map
Current development for Call Map takes place at https://github.com/ajylee/call_map. Call Map is a tool for navigating Python call graphs.

Current development for Call Map takes place at https://github.com/ajylee/call_map. Call Map is a tool for navigating Python call graphs.

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

A Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Applications

Linting tool for CloudFormation templates

Tool for reverse engineering of Angular applications

a static analysis tool for finding vulnerabilities in C/C++ source code

Framework-aware static code analysis tool for automated source code review with platform-specific rules, taint analysis, effort estimation, and…

A static analysis tool for securing Go code

A static analyzer for Java, C, C++, and Objective-C

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

Automated static code analysis framework integrated with SonarQube for early vulnerability detection in source code by scanning Git repositories…

A list of awesome penetration testing tools and resources.

CLI tool to scan codebases for quantum-vulnerable cryptography

Security hardening toolkit for COBOL legacy systems — invisible Unicode detection, format boundary analysis, source transformation integrity

Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in your…

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

StaCoAn is a crossplatform tool which aids developers, bugbounty hunters and ethical hackers performing static code analysis on mobile applications.