
octoscan
Octoscan is a static vulnerability scanner for GitHub action workflows.

Octoscan is a static vulnerability scanner for GitHub action workflows.

SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)

GNU IFUNC is the real culprit behind CVE-2024-3094

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

[EXPERIMENTAL] Kubernetes Operator for Image Assurance

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

Proof of concept of CVE-2017-1000117

A Public Package Scanner for The Community


CVE-2024-24590 ClearML RCE&CMD POC

GitLab CI component for Trivy scanning

Batch upgrade all your Next.js apps to patched versions - fight back against CVE-2025-55183/55184/67779

GitHub Action for Heisenberg SSC

Some labs looking at the xz backdoor vulnerability (CVE-2024-3094)

PHP 8.1.0-dev User-Agentt Backdoor Remote Code Execution (RCE)

Mitigated version for CVE-2016-1000027 spring web.

CVE-2025-47273 — setuptools path traversal PoC

CVE-2025-47273 is a high-severity path traversal vulnerability in the setuptools library ,specifically version 78.1.0 .