
jfrog-CVE-2022-24675
Shell script to recursively scan folders for Go binaries using insecure pem.Decode function, detecting vulnerable or stripped binaries for…

Shell script to recursively scan folders for Go binaries using insecure pem.Decode function, detecting vulnerable or stripped binaries for…

Tool for reverse engineering of Angular applications

grep rough audit - source code auditing tool

Interactive Python call graph navigator for tracing code paths from user input to dangerous patterns, designed for security auditing and code…

Cross-platform static code analysis tool for mobile applications. Decompiles APK files and scans for hardcoded credentials, API keys, URLs, and…

Do You Know What's In Your Python Packages? A Tool for Visualizing Python Package Registry Security Audit Data

Batch-decompile binaries with Ghidra from the command line, generating per-function C files, callgraphs, BSim signatures, and optional SAST results…

Traces user input from sources to dangerous sinks in .NET assemblies, automating source-to-sink data flow analysis to identify vulnerabilities in C#…

Language server for YARA rule development, providing code completion, linting, formatting, navigation, and debugging support inside IDEs.

PHP Static Analysis Tool - discover bugs in your code without running it!

AI-powered static code analysis tool (CLI + SDK) for discovering security vulnerabilities, validating findings, and generating patches. Supports…

Static analysis tool that inspects Go source code for security vulnerabilities using AST, SSA, and taint analysis, with CI/CD integration and CWE…

Static analysis tool for detecting ReDoS (Regular Expression Denial of Service) vulnerabilities in JavaScript and Scala codebases, providing…

PHP static application security testing (SAST) tool that performs taint analysis to detect XSS, SQL injection, and other vulnerabilities using…

Static code analysis tool based on Elasticsearch

Modular static analysis tool to extract hardcoded strings from source code, supporting 20+ languages with comment-aware tokenization for developers…

A variant analysis and visualisation tool that scans codebases for similar vulnerabilities

Go static analysis tool that checks for security issues using an AST.