
trufflehog
Find, verify, and analyze leaked credentials

Find, verify, and analyze leaked credentials

Headless AI agent for deterministic reverse engineering.

YARA Rule Strings Statistics Calculator and Malware Research Helper

Threat hunting command system for agentic IDEs

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, security risks, prompt injection, data exfiltration, and…

A LSTM based framework for handling multiclass imbalance in DGA botnet detection

Analysis of malware found on a server compromised via CVE-2025-55182, including obfuscated dropper, C2 communication, persistence mechanisms, and…

Educational repository detailing CVE-2026-46300 (Fragnesia), a Linux kernel local privilege escalation vulnerability. Provides technical analysis,…

Trust & Safety tools for working together to fight digital harms.

NOVA - Claude Code Protection System against prompt injection attacks

Proxy server that wraps MCP servers with behavioral profiling, security scanning, risk gating, and safe execution. Detects prompt injection,…

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Read-only AI agent that queries your cloud, code, and runtime infrastructure to surface misconfigurations, leaked secrets, and privilege escalation…

Technical analysis of the cPanel/WHM auth bypass

817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3…


Rule-based static and dynamic analysis tool that identifies capabilities in PE, ELF, .NET, and shellcode files, mapping them to MITRE ATT&CK…

OpenSSF Scorecard - Security health metrics for Open Source