
loguccino
Scan and patch tool for CVE-2021-44228 and related log4j concerns.

Scan and patch tool for CVE-2021-44228 and related log4j concerns.
CLI tool for analyzing Go package capabilities by tracing transitive calls to privileged standard library operations, enabling supply chain risk…

An agent to hotpatch the log4j RCE from CVE-2021-44228.

Passive CVE-2025-55182 detection tool for vulnerable React Server Components. Scans package.json, JavaScript bundles, HTTP headers, and API endpoints…

A multi-platform CI/CD vulnerability detection and attack automation tool for identifying security weaknesses in pipeline configurations.

The Anti-Virus for AI Artifacts & RAG Firewall. A static analysis tool scanning Models and Notebooks for RCE, Datasets and RAG docs for Data…

CLI tool that verifies Docker images for CVE-2018-8115 by checking layers for malicious files, helping ensure safe pulls from Docker Hub.

Software composition analysis tool that detects publicly disclosed vulnerabilities in project dependencies using CPE matching, generating detailed…

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

Certificate authority issuing short-lived code-signing certificates tied to OpenID Connect identities, enabling verifiable software supply chain…

A Python library to parse, validate and create SPDX documents.

One command to fix CVE-2025-66478 (React 2 Shell RCE) in your Next.js / React RSC app.

Creosote is our solution to searching for the tarfile vulnerability described by CVE-2007-4559.

Static and dynamic analysis tool for detecting malicious code, suspicious binaries, and privacy violations

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

Script to handle CVE 2022-42889

Shell script to check if your system has a vulnerable version of XZ Utils affected by CVE-2024-3094, enabling quick detection of the supply-chain…

Multi-language detection scripts for CVE-2025-55182 (React2Shell) that scan package.json files to identify vulnerable React dependency versions and…