ajinabraham / njsscanLinks
njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.
☆420Updated last year
Alternatives and similar repositories for njsscan
Users that are interested in njsscan are comparing it to the libraries listed below
Sorting:
- Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilit…☆553Updated 3 years ago
- Mitigate security concerns of Dependency Confusion supply chain security risks☆51Updated 6 months ago
- Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependenci…☆861Updated 2 years ago
- Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an outp…☆490Updated 2 years ago
- Fully open-source SAST scanner supporting a range of languages and frameworks. Integrates with major CI pipelines and IDE such as Azure D…☆150Updated 5 years ago
- JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.☆263Updated this week
- Semgrep Community Edition rules, maintained by Semgrep and the community. Free to use under the Semgrep Rules License.☆1,049Updated this week
- nodejsscan is a static security code scanner for Node.js applications.☆2,538Updated 2 months ago
- A starter secure code review checklist☆184Updated 7 years ago
- Delightful Node.js packages useful for penetration testing, exploiting, reverse engineer, cryptography ...☆426Updated 4 years ago
- Damn Vulnerable NodeJS Application☆758Updated last year
- Purposely vulnerable Java application to help lead secure coding workshops☆192Updated last year
- Zap baseline scanner in Docker with authentication☆103Updated last year
- Finding potential software vulnerabilities from git commit messages☆419Updated 2 years ago
- The DevSecOps toolset for REST APIs☆277Updated 2 years ago
- API Fuzzer which allows to fuzz request attributes using common pentesting techniques and lists vulnerabilities☆406Updated 8 years ago
- Scan your code for security misconfiguration, search for passwords and secrets.☆652Updated 2 years ago
- Tool to check for dependency confusion vulnerabilities in multiple package management systems☆773Updated last year
- A Broken Application - Very Vulnerable!☆180Updated last week
- Vulnerability Scan with Nuclei☆273Updated 3 weeks ago
- A comprehensive list of software composition analysis tools.☆159Updated 2 months ago
- Checkmarx Scan and Result Orchestration☆99Updated last week
- ☆220Updated 2 weeks ago
- A pytest-inspired, DAST framework, capable of identifying vulnerabilities in a distributed, micro-service ecosystem through chaos enginee…☆227Updated last year
- A Node.js vulnerability finding tool.☆96Updated 5 months ago
- ☆420Updated 2 years ago
- GraphQL security auditing script with a focus on performing batch GraphQL queries and mutations☆402Updated 3 years ago
- Web Application Security Checklist☆134Updated 8 months ago
- InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable…☆1,713Updated last week
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆279Updated last year