OligoCyberSecurity / ShellTorchChecker
A tool that checks if a TorchServe instance is vulnerable to CVE-2023-43654
☆39Updated last year
Alternatives and similar repositories for ShellTorchChecker:
Users that are interested in ShellTorchChecker are comparing it to the libraries listed below
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆22Updated last month
- boostsecurityio/lotp☆123Updated last week
- using ML models for red teaming☆43Updated last year
- Manager of third-party sources of Semgrep rules 🗂☆81Updated 9 months ago
- Example repository for GitHub Actions Time of Check to Time of Use (TOCTOU vulnerabilities)☆23Updated 9 months ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆81Updated last year
- Blogpost series showcasing interesting cloud - web app security bugs☆47Updated last year
- A security-first linter for code that shouldn't need linting☆16Updated last year
- PoC and Detection for CVE-2024-21626☆75Updated last year
- Secure Jupyter Notebooks and Experimentation Environment☆74Updated 2 months ago
- An extension to use Semgrep inside Burp Suite.☆88Updated last year
- WAF bypass PoC☆47Updated last year
- Collection of community-driven CodeQL query, library and extension packs☆148Updated last week
- ☆60Updated this week
- Curating Falco rules with MITRE ATT&CK Matrix☆78Updated last year
- An interactive CLI application for interacting with authenticated Jupyter instances.☆53Updated last year
- XBOW Validation Benchmarks☆84Updated 7 months ago
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆39Updated 4 months ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆40Updated 4 months ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆40Updated last year
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆22Updated 3 years ago
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.1, purl, and vers…☆114Updated last week
- POC for CVE-2022-23648☆36Updated 3 years ago
- Guided Differential Fuzzing for HTTP Request Parsing Discrepancies☆17Updated last year
- 🌐 Visualize and explore IaC ✒️ Create and share notes in VS Code 🤝 Sync notes and findings in real-time with friends☆72Updated last year
- ☆31Updated 2 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆30Updated last month
- Community reconstruction of the legacy JSON NVD Data Feeds. This project uses and redistributes data from the NVD API but is neither endo…☆151Updated this week
- This repository hosts several snippets and file related to the BsidesLV 2024 talk about Shadow and Zombie APIs by me☆18Updated 8 months ago
- ☆110Updated last year