SAP / credential-diggerLinks
A Github scanning tool that identifies hardcoded credentials while filtering the false positive data through machine learning models
☆360Updated this week
Alternatives and similar repositories for credential-digger
Users that are interested in credential-digger are comparing it to the libraries listed below
Sorting:
- Damn Vulnerable Python Web App☆183Updated last year
- ☆124Updated 2 years ago
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.2, purl, and vers…☆135Updated this week
- drHEADer helps with the audit of security headers received in response to a single request or a list of requests.☆112Updated last year
- ☆114Updated 2 years ago
- Find secrets in your codebase☆125Updated 11 months ago
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆97Updated 11 months ago
- Scan DockerHub images that match a keyword to find secrets.☆61Updated 4 years ago
- Software Component Verification Standard (SCVS)☆153Updated 10 months ago
- Host and manage multiple Juice Shop instances for security trainings and Capture The Flags☆306Updated last week
- AI based Secrets Detection Python Framework☆62Updated 7 months ago
- A command line tool for detecting vulnerabilities in Python dependencies and doing safe package installs☆51Updated 2 years ago
- A project to visualize the software supply chain☆58Updated 2 years ago
- Finding potential software vulnerabilities from git commit messages☆419Updated 2 years ago
- OWASP Foundation Web Respository☆101Updated last month
- 🧮 An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessment☆163Updated 4 years ago
- threatspec - continuous threat modeling, through code☆377Updated 5 years ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆68Updated 7 months ago
- Purposely vulnerable Java application to help lead secure coding workshops☆191Updated last year
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.☆110Updated 2 years ago
- CLI component of OWASP PurpleTeam☆134Updated 2 years ago
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆122Updated 2 years ago
- Damn Vulnerable Java (EE) Application☆144Updated 2 years ago
- An open source intelligence tool to crawl the graph of certificate Alternate Names☆366Updated 5 months ago
- Sample scan files for testing DefectDojo imports☆85Updated 5 months ago
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆132Updated 3 years ago
- The DevSecOps toolset for REST APIs☆278Updated 3 years ago
- boostsecurityio/lotp☆138Updated 2 weeks ago
- Python API library for DefectDojo☆43Updated 2 years ago
- OWASP SecurityRAT (version 1.x) - Tool for handling security requirements in development☆186Updated 5 months ago