ShiftLeftSecurity / shiftleft-scan-vscode
ShiftLeft Scan is a free and open-source commercial-grade security tool for modern DevOps teams.
☆12Updated last year
Related projects ⓘ
Alternatives and complementary repositories for shiftleft-scan-vscode
- A HTTP PoC Endpoint for cve-2020-5260 which can be deployed to Heroku☆37Updated 4 years ago
- Vulnerability consolidation and management tool, enhances scan results by merging different findings of the same weakness across multiple…☆24Updated last year
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆49Updated 7 months ago
- A tool for detecting regular expression denial-of-service vulnerabilities in Android apps.☆33Updated 8 years ago
- TSLint rules for Angular☆18Updated 5 years ago
- Collection of python helper API's for interacting with LGTM.com in ways the official API doesn't support.☆23Updated 2 years ago
- A collection of various scripts and automations to simplify Checkmarx SAST and IAST setup and use☆14Updated 6 years ago
- Writeup of CVE-2017-1002101 with sample "exploit"/escape☆35Updated 6 years ago
- Some helpful Helm Charts for pentesters☆38Updated 5 years ago
- Docker container for running OWASP WebGoat.NET application☆11Updated 6 years ago
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 2 years ago
- Externalize Java application access to protected resources as log messages.☆41Updated 6 months ago
- INTERCEPT / Policy as Code Auditing & Compliance☆82Updated 3 weeks ago
- CodeQL database manager☆46Updated 10 months ago
- Deprecated: Please visit https://github.com/github/codeql instead.☆81Updated 2 years ago
- Paper, data and code from Investigating Potential Security Vulnerability Manifestation through Various Analyses & Inferences Regarding In…☆18Updated 3 years ago
- Generic SAST Library☆125Updated last week
- Jekyll Files for cloudsecwiki.com☆49Updated 3 years ago
- My custom semgrep rules☆18Updated 4 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- JWT fuzzer☆104Updated 6 years ago
- RCE in Slanger using deserialization of Ruby objects☆11Updated 5 years ago
- Dependency Combobulator☆89Updated 10 months ago
- *Unofficial* lgtm.com CLI — Use at your own risk. Also don't add more than 3K projects to "My projects" list.☆13Updated 2 years ago
- An auto-scoring capture-the-flag game focusing on TOCTOU vulnerabilities☆18Updated 4 years ago
- Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations☆21Updated 6 months ago
- Python Package for burprestapi☆16Updated 4 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆42Updated 5 months ago
- Manual JavaScript Linting is a Bug☆49Updated 3 years ago
- ☆13Updated 7 months ago