americanexpress / earlybirdLinks
EarlyBird is a sensitive data detection tool capable of scanning source code repositories for clear text password violations, PII, outdated cryptography methods, key files and more.
☆742Updated this week
Alternatives and similar repositories for earlybird
Users that are interested in earlybird are comparing it to the libraries listed below
Sorting:
- Private key usage verification☆430Updated 3 months ago
- A suite of secret scanners built in Rust for performance. Based on TruffleHog (https://github.com/dxa4481/truffleHog) which is written in…☆519Updated 3 weeks ago
- all paths lead to clouds☆638Updated last year
- Searches through git repositories for high entropy strings and secrets, digging deep into commit history☆507Updated last month
- Go rules for semgrep and go-ruleguard☆473Updated 8 months ago
- Telling tales on you for leaking secrets!☆234Updated this week
- ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.☆691Updated last year
- Slack enumeration and exposed secrets detection tool☆384Updated 3 weeks ago
- Fast HTTP enumerator☆484Updated 3 months ago
- A set of tools to work with the feeds (vulnerabilities, CPE dictionary etc.) distributed by National Vulnerability Database (NVD)☆465Updated last year
- Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets☆813Updated 3 months ago
- An open source intelligence tool to crawl the graph of certificate Alternate Names☆354Updated last year
- Scan your code for security misconfiguration, search for passwords and secrets.☆648Updated 2 years ago
- Fetch web pages using headless Chrome, storing all fetched resources including JavaScript files. Run arbitrary JavaScript on many web pag…☆522Updated 3 months ago
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆297Updated this week
- Yar is a tool for plunderin' organizations, users and/or repositories.☆238Updated 4 years ago
- Get (security) info about IP addresses☆233Updated 3 months ago
- A Server Side Request Forgery (SSRF) protection library. Made with 🖤 by Doyensec LLC.☆104Updated last month
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆751Updated 7 months ago
- Uncover forgotten secrets and bring them back to life, haunting security and operations teams.☆207Updated 2 years ago
- OWASP Domain Protect - prevent subdomain takeover☆397Updated 7 months ago
- An automated tool which can simultaneously crawl, fill forms, trigger error/debug pages and "loot" secrets out of the client-facing code …☆399Updated 6 months ago
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆952Updated this week
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆275Updated 10 months ago
- Open Source Package Analysis☆836Updated 3 months ago
- Domain name permutation engine written in Go☆267Updated last year
- Secrets scanner that understands code☆188Updated last year
- [mirror] The Go Vulnerability Database☆581Updated this week
- A container analysis and exploitation tool for pentesters and engineers.☆668Updated last year
- A checklist of practices for organizations dealing with account takeover (ATO)☆270Updated 9 months ago