
trufflehog
Find, verify, and analyze leaked credentials

Find, verify, and analyze leaked credentials

Open source vulnerability DB and triage service.

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Hardened, Azure-optimized Linux distribution built from Fedora sources with RPM packaging, supply chain security, and declarative configuration for…


Suppress vulnerabilities applying Kubernetes context to scans

BianryNinja plugin for identifying vulnerabilities in decompiled binaries with both programmatic scans and LLM support.

Patched google_gax 0.4.1 for Tesla 1.18.3+ compatibility (CVE-2026-48598)

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

OpenGraph collector for BloodHound that maps attack paths from DevOps to MLOps infrastructure, collecting CI/CD pipeline, service principal, and ML…

Scan codebases and GCP projects for exposed API credentials


Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

A software supply chain framework powered by Nix.


Ansible playbook for patching CVE-2024-3094

Getting a handle on container security