ajinabraham / njsscan
njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.
β388Updated 3 months ago
Alternatives and similar repositories for njsscan:
Users that are interested in njsscan are comparing it to the libraries listed below
- JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns π¬.β231Updated 2 weeks ago
- nodejsscan is a static security code scanner for Node.js applications.β2,431Updated last month
- Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilitβ¦β522Updated 2 years ago
- Generic SAST Libraryβ127Updated 3 months ago
- Fully open-source SAST scanner supporting a range of languages and frameworks. Integrates with major CI pipelines and IDE such as Azure Dβ¦β147Updated 4 years ago
- β404Updated 2 years ago
- Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependenciβ¦β827Updated last year
- Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an outpβ¦β467Updated last year
- A starter secure code review checklistβ180Updated 6 years ago
- OWASP ASST (Automated Software Security Toolkit) | A Novel Open Source Web Security Scanner.β164Updated 3 weeks ago
- Semgrep rules registryβ857Updated this week
- Getting a handle on container securityβ644Updated last year
- API Fuzzer which allows to fuzz request attributes using common pentesting techniques and lists vulnerabilitiesβ392Updated 7 years ago
- Application Security Automationβ528Updated last year
- oauth security guidelinesβ222Updated 5 years ago
- A Broken Application - Very Vulnerable!β142Updated this week
- β180Updated 3 months ago
- Code Scanning/SAST/Static Analysis/Linting using many tools/Scanners with One Report (Code, IaC) - Betterscanβ842Updated this week
- Attack surface detector that identifies endpoints by static analysisβ656Updated this week
- Zap baseline scanner in Docker with authenticationβ104Updated 9 months ago
- Vulnerability Scan with Nucleiβ249Updated 3 months ago
- Scan your code for security misconfiguration, search for passwords and secrets.β642Updated last year
- We would like to request that all contributors please clone a *fresh copy* of this repository since the September 21st maintenance.β25Updated last year
- NextJS-based single-page application for completing and reviewing SAMM assessmentsβ70Updated last year
- GraphQL automated security testing toolkitβ311Updated last year
- Tool to check for dependency confusion vulnerabilities in multiple package management systemsβ709Updated 6 months ago
- Finding potential software vulnerabilities from git commit messagesβ408Updated last year
- Predict Mongo ObjectIdsβ127Updated 6 years ago
- β122Updated last year
- Audits an NPM package.json file to identify known vulnerabilities.β225Updated 3 months ago