
jfrog-CVE-2022-21449
Scans compiled Java archives (JAR/WAR) for ECDSA algorithm usage to detect CVE-2022-21449 vulnerability. Recursively examines .class files with…

Scans compiled Java archives (JAR/WAR) for ECDSA algorithm usage to detect CVE-2022-21449 vulnerability. Recursively examines .class files with…

Generate malicious files using recently published homoglyphic-attack (CVE-2021-42694)

Demonstration exploit for CVE-2022-32223: DLL hijacking in Node.js on Windows via malicious providers.dll, targeting OpenSSL installations.

Audits Python environments, requirements files and dependency trees for known security vulnerabilities, and can automatically fix them

Static security scanner for AI agent skill packages. Detects malicious SKILL.md files and bundled scripts before they run.

Applications that are vulnerable to the log4j CVE-2021-44228/45046 issue may be detectable by scanning jar, war, ear, zip files to search for the…

Find, verify, and analyze leaked credentials

Builds a SQLite database of Maven artifacts (ArtifactID, GroupID, Version, SHA1) for Trivy's Java component vulnerability detection, enabling scans…

Static web application for viewing SBOMs and performing on-demand vulnerability scanning with osv.dev. Easily deployable to GitHub/GitLab Pages.

Discover and remediate Log4Shell vulnerability [CVE-2021-45105]