
trufflehog
Find, verify, and analyze leaked credentials

Find, verify, and analyze leaked credentials

BianryNinja plugin for identifying vulnerabilities in decompiled binaries with both programmatic scans and LLM support.

Patched google_gax 0.4.1 for Tesla 1.18.3+ compatibility (CVE-2026-48598)

Scan codebases and GCP projects for exposed API credentials

Hardened, Azure-optimized Linux distribution built from Fedora sources with RPM packaging, supply chain security, and declarative configuration for…

Getting a handle on container security

Weave GitOps is transitioning to a community driven project! It provides insights into your application deployments, and makes continuous delivery…


Suppress vulnerabilities applying Kubernetes context to scans


OpenGraph collector for BloodHound that maps attack paths from DevOps to MLOps infrastructure, collecting CI/CD pipeline, service principal, and ML…


Ansible playbook for patching CVE-2024-3094

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

A software supply chain framework powered by Nix.

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Open source vulnerability DB and triage service.