
jackhammer
Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

CLI tool to scan codebases for quantum-vulnerable cryptography

A list of awesome penetration testing tools and resources.

Bandit is a tool designed to find common security issues in Python code.

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

PHP static application security testing (SAST) tool that performs taint analysis to detect XSS, SQL injection, and other vulnerabilities using…

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

Link sources to sinks in C# applications.

Current development for Call Map takes place at https://github.com/ajylee/call_map. Call Map is a tool for navigating Python call graphs.

Static code analysis tool based on Elasticsearch

Batch-decompile binaries with Ghidra from the command line, generating per-function C files, callgraphs, BSim signatures, and optional SAST results…

grep rough audit - source code auditing tool

Go static analysis tool that checks for security issues using an AST.

AI-powered CLI tool that reviews code for security vulnerabilities, bugs, and anti-patterns using LLMs. Supports local and cloud providers, git…

PHP Static Analysis Tool - discover bugs in your code without running it!

Find regular expressions which are vulnerable to ReDoS (Regular Expression Denial of Service)