
route-sixty-sink
Link sources to sinks in C# applications.

Link sources to sinks in C# applications.

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

A list of awesome penetration testing tools and resources.

Bandit is a tool designed to find common security issues in Python code.

Current development for Call Map takes place at https://github.com/ajylee/call_map. Call Map is a tool for navigating Python call graphs.

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Python Command-Line Ghidra Decompiler

grep rough audit - source code auditing tool

PHP static application security testing (SAST) tool that performs taint analysis to detect XSS, SQL injection, and other vulnerabilities using…

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

Static code analysis tool based on Elasticsearch

CLI tool to scan codebases for quantum-vulnerable cryptography

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

PHP Static Analysis Tool - discover bugs in your code without running it!

Static analysis CLI that scans AI-generated code for vulnerabilities like SQL injection, unsafe reflection, and hardcoded secrets, with SARIF export…

Scans project source code across 16 languages to flag dangerous functions linked to SQLi, XSS, SSRF, command injection, weak crypto, and other web…

Do You Know What's In Your Python Packages? A Tool for Visualizing Python Package Registry Security Audit Data