
Cordon
Run any command inside a restricted filesystem view on Linux

Hardened, Azure-optimized Linux distribution built from Fedora sources with RPM packaging, supply chain security, and declarative configuration for…

File-system scanner that detects vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046) by analyzing compiled Java classes, including nested…

CVE-2024-3094 XZ Utils backdoor research - attack surface visualiser, system vulnerability checker, and general Linux CVE assessment tool

Portable binary distribution of xz-utils 5.8.3 with CVE-2024-3094 verification. Provides static builds for Linux, macOS, and Windows for compression…

CVE-2024-3094 exposed a backdoor in the XZ compression library, allowing remote SSH access by bypassing authentication. It’s a major supply chain…

A tool to reverse engineer and inspect the RPM and APT databases to list all the packages along with executables, service, versions and CVE.

Proper sandboxing for agentic coding and web browsing

Signing-key abuse and update exploitation framework

GNU IFUNC is the real culprit behind CVE-2024-3094


Alat ini mendeteksi potensi kerentanan React2Shell (CVE-2025-55182) dalam proyek React dengan memeriksa: - File `package.json` dan file lock untuk…

Hardened dasel v3.3.1 package and image built via Melange and apko. Patching CVE-2026-33320.

log4j vulnerability wrapper scanner for CVE-2021-44228

Discover and remediate Log4Shell vulnerability [CVE-2021-45105]

Scan and patch tool for CVE-2021-44228 and related log4j concerns.

Linux应急处置/信息搜集/漏洞检测工具,支持基础配置/网络流量/任务计划/环境变量/用户信息/Services/bash/恶意文件/内核Rootkit/SSH/Webshell/挖矿文件/挖矿进程/供应链/服务器风险等13类70+项检查

Threat intelligence report analyzing the xz-utils backdoor vulnerability (CVE-2024-3094)