DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.
☆40Nov 21, 2021Updated 4 years ago
Alternatives and similar repositories for dustilock
Users that are interested in dustilock are comparing it to the libraries listed below
Sorting:
- Find which of your direct GitHub dependencies is susceptible to RepoJacking attacks☆61May 29, 2022Updated 3 years ago
- SecureEye is an AI tool for secure code review. It assesses code for vulnerabilities, and common attack vectors☆14May 21, 2024Updated last year
- Burp Enterprise Toolkit☆12Feb 25, 2022Updated 4 years ago
- ManageEngine ADManager Command Injection☆11Oct 2, 2023Updated 2 years ago
- Template repo for Conjur repositories☆17Nov 3, 2025Updated 3 months ago
- automatically detect software supply chain smells and issues http://arxiv.org/pdf/2410.16049☆18Feb 13, 2026Updated 2 weeks ago
- GitHub Actions Cache Native Malware - for Educational and Research Purposes only.☆97Jan 28, 2026Updated last month
- Golang implementation of PyMISP-feedgenerator☆18Jul 31, 2022Updated 3 years ago
- scans popular packages and alerts in cases there is suspicion of an account takeover☆41Feb 20, 2022Updated 4 years ago
- A PoC exploit for CVE-2022-41622 - a CSRF in F5 BIG-IP control plane that leads to remote root☆21Oct 20, 2022Updated 3 years ago
- A proof of concept project that demonstrates oWASP.org's top 10 web vulnerabilities☆21Jun 22, 2015Updated 10 years ago
- Community curated list of templates for the erebus engine to find security vulnerabilities.☆16Jul 10, 2021Updated 4 years ago
- Application Security Workflow Automation using Docker and Kubernetes☆23Dec 11, 2022Updated 3 years ago
- Locally scan all the repositories of a github organization☆31Jul 20, 2025Updated 7 months ago
- ☆30Jan 12, 2023Updated 3 years ago
- POC in order to materialize CSRF prevention concepts described in the following OWASP CSRF cheatsheet☆30May 25, 2017Updated 8 years ago
- boostsecurityio/lotp☆139Updated this week
- OSINT tool for username, email and domains☆31May 19, 2024Updated last year
- GitHub Action to analyze Pull Requests for open-source supply chain issues☆16Nov 4, 2025Updated 3 months ago
- ☆35Jan 4, 2026Updated last month
- This repository contains links to awesome security articles.☆42Aug 2, 2025Updated 6 months ago
- ☆10Sep 24, 2021Updated 4 years ago
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆98Feb 11, 2025Updated last year
- Simple Python script that will set up a PHP server for stealing cookies - and provided the payload needed.☆40Jan 28, 2025Updated last year