Skip to content
KitploitKITPLOIT
ツールエクスプロイトブログ
Log in
提出
ツールエクスプロイトブログ
提出

ハッキング、侵入テスト、サイバーセキュリティツールをあなたのセキュリティアーセナルに!

Kitploitはハッキング、サイバーセキュリティ、ペネトレーションテストのツールディレクトリです。最新のプロジェクトアップデートを見つけて、脆弱性の発見、システム分析、テストの自動化、セキュリティの強化を行いましょう。

フィードお問い合わせプライバシー© 2026 Kitploit

ツールディレクトリ

カテゴリ

すべてのカテゴリを見る
Loading categories
静的コード分析 (SAST) | Kitploit
カテゴリ

静的コード分析 (SAST)

実行せずにソースコードを調べてセキュリティ上の欠陥を見つけるためのツール。

Kitploit おすすめ

おすすめツール

10 選択中
semgrep preview#1

semgrep

GitHubsemgrep/semgrep
16.2k1日前
codeql preview#2

codeql

GitHubgithub/codeql
10.1k3時間23分前
sonarqube preview#3

sonarqube

GitHubsonarsource/sonarqube
11.0k21時間20分前
infer preview#4

infer

GitHubfacebook/infer
15.7k8日前
bandit preview#5

bandit

GitHubpycqa/bandit
8.2k9日前
gosec preview#6

gosec

GitHubsecurego/gosec
8.9k17時間37分前
bearer preview#7

bearer

GitHubbearer/bearer
2.7k15日前
horusec preview#8

horusec

GitHubzupit/horusec
1.3k3年前
ApplicationInspector preview#9

ApplicationInspector

GitHubmicrosoft/applicationinspector
4.4k16日前
njsscan preview#10

njsscan

GitHubajinabraham/njsscan
43610日前
最新関連度人気最近更新
166 件
static-analysis preview

static-analysis

GitHubanalysis-tools-dev/static-analysis

コード品質の向上に焦点を当てた、プログラミング言語、設定、ビルドツール、CI向けの静的解析(SAST)ツールとリンターの厳選ディレクトリ。

static-analysisstatic-code-analysisvulnerability-analysis+5
14.8k9日前
trivy preview

trivy

GitHubaquasecurity/trivy

コンテナ、Kubernetes、コードリポジトリ、クラウドなどにおける脆弱性、設定ミス、シークレット、SBOMを発見

cloud-infrastructure-securitydefensive-toolsvulnerability-scanners+14
37.4k18時間29分前
infer preview

infer

GitHubfacebook/infer

Java、C、C++、Objective-C 用の静的解析ツール

static-analysisstatic-code-analysiscode-analysis+1
15.7k8日前
semgrep preview

semgrep

GitHubsemgrep/semgrep

軽量な静的解析、多言語対応。ソースコードのようなパターンでバグの亜種を見つけます。

vulnerability-scannersstatic-code-analysisvulnerability-analysis+9
16.2k1日前
codeql preview

codeql

GitHubgithub/codeql

CodeQL: 世界中のセキュリティ研究者を支えるライブラリとクエリ、そしてGitHub Advanced Securityにおけるコードスキャニングを実現するツールです。

static-code-analysisvulnerability-analysiscode-analysis+1
10.1k3時間23分前
phpstan preview

phpstan

GitHubphpstan/phpstan

PHP Static Analysis Tool - コードを実行せずにバグを発見!

static-code-analysiscode-analysis
14.1k4時間43分前
sonarqube preview

sonarqube

GitHubsonarsource/sonarqube

コード品質と静的解析のプラットフォーム。品質ゲート、多言語スキャン、およびCI/CDワークフローにおける脆弱性や保守性の問題を検出するためのセキュリティ重視のルールを備えています。

static-analysisstatic-code-analysisvulnerability-analysis+2
11.0k21時間20分前
checkov preview

checkov

GitHubbridgecrewio/checkov

ビルド時にTerraform、Kubernetes、CloudFormation、コンテナイメージ全体でクラウドの誤設定、脆弱性、シークレットを検出するインフラストラクチャ・アズ・コード向けの静的解析ツール。

cloud-infrastructure-securitystatic-analysisvulnerability-scanners+12
8.9k12時間57分前
codex-security preview

codex-security

GitHubopenai/codex-security

セキュリティ脆弱性を発見、検証、修正するためのOpenAIのCodex Security CLIおよびTypeScript SDK。 npm: https://www.npmjs.com/package/@openai/codex-security

vulnerability-scannersstatic-code-analysisdevsecops
9.6k20時間8分前
bandit preview

bandit

GitHubpycqa/bandit

Banditは、Pythonコードにおける一般的なセキュリティ問題を見つけるために設計されたツールです。

static-code-analysisvulnerability-analysiscode-analysis
8.2k9日前
gosec preview

gosec

GitHubsecurego/gosec

Go セキュリティチェッカー

static-code-analysisvulnerability-analysiscode-analysis+1
8.9k17時間37分前
pmd preview

pmd

GitHubpmd/pmd

拡張可能な多言語静的コード解析ツール。

static-analysisstatic-code-analysiscode-analysis
5.5k17時間38分前
pycdc preview

pycdc

GitHubzrax/pycdc

C++ による Python バイトコード逆アセンブラおよび逆コンパイラ

static-analysisstatic-code-analysisreverse-engineering+2
4.6k5ヶ月前
Agentic-Bug-Hunter preview

Agentic-Bug-Hunter

GitHubawarexone/agentic-bug-hunter

AI-powered bug bounty hunting toolkit that works with or without subscription.

reconnaissancevulnerability-scannersweb-vulnerability-scanners+8
5.2k6日前
ApplicationInspector preview

ApplicationInspector

GitHubmicrosoft/applicationinspector

ソースコードアナライザー。JSONベースのルールエンジンを用いた静的解析により、「コードに何が含まれているか?」という質問に迅速に答えるための、関心のある特徴やその他の特性を表面化するために構築されています。使用前にコンポーネントをスキャンしたり、機能レベルの変更を検出するのに最適です。

static-analysisstatic-code-analysisvulnerability-analysis+3
4.4k16日前
awesome-nodejs-security preview

awesome-nodejs-security

GitHublirantal/awesome-nodejs-security

Node.jsのセキュリティツール、静的解析ツール、脆弱性スキャナー、教育リソース(OWASP Top 10、サプライチェーンセキュリティ、セキュアコーディングプラクティスを含む)の厳選されたディレクトリです。

vulnerability-scannersstatic-code-analysiscode-analysis+5
3.0k1ヶ月前
raptor preview

raptor

GitHubgadievron/raptor

Autonomous security research framework integrating static analysis, binary analysis, fuzzing, LLM-powered vulnerability validation, exploit…

penetration-testing-frameworksdynamic-analysis-sandboxingexploit-frameworks+7
3.6k11時間46分前
semgrep-rules preview

semgrep-rules

GitHubsemgrep/semgrep-rules

多数の言語にわたってセキュリティ脆弱性、危険なコードパターン、および設定の問題を検出するための静的解析ルールパック。CI/CDスキャンワークフローと統合します。

static-analysisvulnerability-scannersstatic-code-analysis+3
1.3k8日前
前へ12…10次へ