
Find-WSUS
Helps defenders find their WSUS configurations in the wake of CVE-2025-59287

Helps defenders find their WSUS configurations in the wake of CVE-2025-59287

Ansible playbooks designed to check and remediate CVE-2024-3094 (XZ Backdoor)

Production Ready Steps for Remediating a openssl CVE(https://nvd.nist.gov/vuln/detail/cve-2021-3712) on EOL CentOS7 box

Example InSpec profile to detect presence of a malicious rest-client gem (CVE-2019-15224)

Automated script suite to detect and remediate CVE-2025-46295 by replacing vulnerable Apache Commons JARs in FileMaker Server installations with…

log4j vulnerability wrapper scanner for CVE-2021-44228

integration examples for the CVE-2020-25860 fix

Information about CVE-2026-27825 & CVE-2026-27826 discovered by Pluto Security and a bash script for identifying vulnerable mcp-atlassian instances…

Verified tool registry manager. Manages developer toolchains from git-based registries.

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…

Formal inter-procedural taint analysis engine for application security. Tracks untrusted data across function boundaries, persistence layers, and…

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

Static analysis CLI tool that reduces Node.js application attack surface by constructing dependency graphs and removing unused modules and functions…

Vulnerability Scanner for Detecting Publicly Disclosed Vulnerabilities in Application Dependencies

Modular Node.js runtime orchestrator with HMAC integrity verification, import guards, and sandboxed execution for secure, layered application…

Demonstrates exploitation of CVE-2017-8046 in a Spring Boot application, including a SpEL injection payload and dependency-check verification for…

Seal Security example — vulnerable npm app (EJS CVE-2022-29078) remediated to sealed versions; GitHub Actions + Jenkins integration

Seal Security example — vulnerable Maven app (SnakeYAML CVE-2022-1471) remediated to sealed versions; GitHub Actions + Jenkins integration