
Log4j-Updater
Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228

Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228

Python reference implementation of The Update Framework (TUF)

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

Issue with tough, versions prior to 0.20.0 (Multiple CVEs)

Anteater - CI/CD Gate Check Framework

A practical framework identifying and prioritizing the top security risks in AI datacenter infrastructure, covering hardware, networking, management…

OWASP framework providing structured security capabilities for software products, derived from regulatory and industry standards analysis to guide…

Python source code auditing and static analysis on a large scale

Signing-key abuse and update exploitation framework

Staged static taint analysis framework for GitHub Actions workflows. Detects code injection vulnerabilities using taint-tracking and an impact…

Created after the disclosure of CVE-2022-22965 and CVE-2022-22963. Bash script that detects Spring Framework occurrences in your projects and…

Software Component Verification Standard (SCVS)

A CI/CD Red Team Framework for demonstrating Build Pipeline security risks.

Arcane is a simple script designed to backdoor iOS packages (iphone-arm) and create the necessary resources for APT repositories.

Security training for the apps you actually ship. Open your browser and start hacking.

Documented security vulnerabilities in the FatFs embedded filesystem library with CVE details, fuzzing harness, exploit disk-image generator, and…

Source code for the Binaries of OWASP WrongSecrets

Hook for the PoC for exploiting CVE-2024-32002