
oss-fuzz
OSS-Fuzz - continuous fuzzing for open source software.

OSS-Fuzz - continuous fuzzing for open source software.

80k+ WordPress Nuclei templates, updated daily from Wordfence intel—filter by severity/tags/CVE and scan in one line. 🚀🔒

NVD, Ubuntu, Alpine

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.

Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.

Interactive platform linking security standards and guidelines for designing, developing, testing, and procuring secure software. Provides a unified…

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

Open source vulnerability DB and triage service.

Scalable threat intelligence platform that enriches observables and files using 200+ analyzers, with built-in GUI, REST API, and automated workflows…

Program for determining types of files for Windows, Linux and MacOS.

CVE cache of the official CVE List in CVE JSON 5 format

PoCs and exploits for CVEs discovered by NebuSec.

Community curated list of templates for the nuclei engine to find security vulnerabilities.

OWASP Community Pages are a place where OWASP can accept community contributions for security-related content.

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

🧪 Collects CVE PoCs and backs them up to the Internet Archive when they are unavailable on GitHub.

Git diff for SBOMs—compare CycloneDX, SPDX, and Syft documents, detect tampering, and gate CI.