
AWS-Tough-Library-Multiple-CVEs
Issue with tough, versions prior to 0.20.0 (Multiple CVEs)

Issue with tough, versions prior to 0.20.0 (Multiple CVEs)

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

Software Component Verification Standard (SCVS)

LlamaStack-RCE: Deterministic Supply Chain Exploitation & Hardening Framework [CVE-2024-50050] Focus on AI Security Research…

Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228

Autonomous security research framework integrating static analysis, binary analysis, fuzzing, LLM-powered vulnerability validation, exploit…


credential isolation for AI agents. Agents never see real API keys - structural guarantee, not policy.

A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

Python source code auditing and static analysis on a large scale

Supply-chain Levels for Software Artifacts

Python reference implementation of The Update Framework (TUF)

Modular framework to detect and prevent dependency confusion attacks by analyzing package manifests across multiple sources and package management…