bundler-audit
A tool to run YARA rules against node_module folders to identify suspicious scripts
Proactively identify and fix security weaknesses to prevent cyber threats and protect your assets.
A tool to run YARA rules against node_module folders to identify suspicious scripts
Linux privilege escalation auditing tool for detecting security deficiencies in Linux kernels.
A tool that finds unprotected secrets in container images or file systems, matching against a database of 140 secret types.
Command line interface for managing and inspecting images, policies, subscriptions, and registries with support for various operating systems and packages.
OCaml bindings to the YARA scanning engine for integrating YARA scanning capabilities into OCaml projects
A repository containing hourly-updated data dumps of bug bounty platform scopes
Open source security auditing tool to search and dump system configuration.
A community effort to compile security advisories for Ruby libraries with a detailed directory structure.
Open source web application security scanner with 200+ vulnerability identification capabilities.
A list of vulnerable applications for testing and learning
Donate to your favorite open-source projects and charities using PayPal
Compares target's patch levels against Microsoft vulnerability database and detects missing patches.
A tool to find and search for registered CVEs, creating a local CVE database for offline use.
testssl.sh is a free command line tool for checking server's TLS/SSL configurations with clear and machine-readable output.
A fuzzer for detecting open redirect vulnerabilities
A tool for scanning websites with open .git repositories and dumping their content for Bug Hunting/Pentesting Purposes.
A free and open-source tool for identifying vulnerabilities in Joomla-based websites.
Automated contextual security findings enrichment and impact evaluation tool for vulnerability management.
Automate version scraping and vulnerability scanning for Ruby on Rails stacks.
Cloud-based service for testing and analyzing Android and iOS apps for malware, vulnerabilities, and security threats.
An open source project for static analysis of vulnerabilities in application containers