
osv-scanner
Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Apache RAT (Release Audit Tool) Gradle Plugin

The wolfSSL library is a small, fast, portable implementation of TLS/SSL for embedded devices to the cloud. wolfSSL supports up to TLS 1.3 and DTLS…

A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using…

Snyk CLI scans and monitors your projects for security vulnerabilities.

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

Repository for CoSAI Workstream 4, Secure Design Patterns for Agentic Systems

secure multiplexed execution paths for agents - zero trust, zero setup, zero latency.

Checkov PoC: arbitrary code execution through auto-loaded configuration and unsigned external Python checks.

Formal inter-procedural taint analysis engine for application security. Tracks untrusted data across function boundaries, persistence layers, and…

Intelligent Component Analysis platform that leverages SBOMs to identify and reduce software supply chain risk through continuous vulnerability…

The Most Comprehensive Docker Security Scanner

Terminal security for developers and AI agents. Intercepts homograph URLs, pipe-to-shell, ANSI injection, obfuscated payloads, data exfiltration, and…

OpenAnt from Knostic is the leading open source LLM-based vulnerability discovery product, helping defenders proactively find verified security flaws…

Tamper-evident audit trails for AI agents: hash-chained Runtime Records, dependency-free, verifiable by anyone.

Open-source secret scanner in Rust

A collection of awesome resources related AI security

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis