GHAST (GitHub Actions Static Analysis Tool) is a tool to analyze the security posture of your GitHub Actions and its surrounding environment for common security vulnerabilities or missing security configuration.
☆20Aug 29, 2023Updated 2 years ago
Alternatives and similar repositories for ghast
Users that are interested in ghast are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- SecureStack Application Bill of Materials (ABOM/SBOM)☆13Aug 26, 2022Updated 3 years ago
- An agent that can help triage vulnerabilities across multiple codebases☆18Mar 14, 2026Updated 4 months ago
- CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space.☆11Oct 29, 2018Updated 7 years ago
- Focused malicious code detection ruleset, with a high protection-to-noise ratio☆149Feb 24, 2025Updated last year
- A powerful containerized tool that automatically downloads, extracts, and scans packages from PyPI and npm for embedded secrets, API keys…☆20Jul 25, 2025Updated 11 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Import your WordPress blog to Write.as☆13Feb 20, 2025Updated last year
- My Wardley Mapping Stuff (see: https://medium.com/wardleymaps)☆13May 3, 2021Updated 5 years ago
- Toolset for detecting reflected xss in websites☆16Oct 6, 2018Updated 7 years ago
- Jenkins Security Research or Hacking Jenkins ;)☆12Dec 10, 2024Updated last year
- ☆14Apr 9, 2019Updated 7 years ago
- [WIP!] a cross platfrom Go library to work with the notification area / system tray☆11Aug 15, 2019Updated 6 years ago
- A simple web app to get the latest EPSS data for a CVE ID☆14Dec 14, 2025Updated 7 months ago
- A simple little Python script that uses Impacket to check if SMBv1 is enabled on a remote host☆16Mar 9, 2017Updated 9 years ago
- Strafer: A tool to detect potential infections in Elasticsearch instances☆27Mar 14, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Supply Chain Security Research - Attack Trees☆10Jan 9, 2023Updated 3 years ago
- Find open databases - Powered by Binaryedge.io☆14Jan 4, 2020Updated 6 years ago
- Websocket based egress tester☆20Nov 23, 2016Updated 9 years ago
- Wordpress Plugin "WP Checkout" Mass exploit☆16Jun 18, 2017Updated 9 years ago
- ANWI - All New Wireless IDS☆29Aug 3, 2018Updated 7 years ago
- A Burp Extender plugin, that will deserialized java objects and encode them in XML using the Xtream library.☆26Apr 14, 2015Updated 11 years ago
- Nice (ish) bindings for the EndpointSecurity framework on macOS for Rust.☆21Dec 14, 2023Updated 2 years ago
- A malware scanner with Yara and ClamAV binding☆12May 23, 2026Updated 2 months ago
- Scripts for solving WebSecurity Academy labs of PortSwigger using Python☆107Aug 28, 2025Updated 10 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Everything related to YARA☆16Apr 18, 2026Updated 3 months ago
- AI-powered security scanner for Claude Code plugins and skills - LLM analysis, static rules, taint tracking, CI/PR integration, and inte…☆15Mar 1, 2026Updated 4 months ago
- ⚠️ ARCHIVED**: This repository is no longer actively maintained. All Sigma rules are now managed and available in SIEM Rules☆14Mar 19, 2026Updated 4 months ago
- OWASP Foundation web repository☆46Jun 22, 2026Updated last month
- naisdevice is a application suite that enables NAV developers to connect to internal resources in a secure and friendly manner.☆18Jul 10, 2026Updated 2 weeks ago
- CDF FAQ☆11Aug 16, 2022Updated 3 years ago
- AWS Modernization DevSecOps Code Samples☆13Nov 30, 2020Updated 5 years ago
- DbgFlashVul☆10Sep 8, 2015Updated 10 years ago
- AI-powered tool designed to help security professionals detect vulnerabilities at machine speed and extract insights from extensive bug b…☆19Aug 27, 2024Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A Flask CLI extension to generate random secret tokens.☆14Nov 19, 2020Updated 5 years ago
- awsbe☆17Jun 1, 2022Updated 4 years ago
- ☆15Sep 21, 2019Updated 6 years ago
- sget is a keyless safe script retrieval and execution tool☆18Feb 7, 2022Updated 4 years ago
- Example Projects for Cloudsmith Integration☆13Sep 30, 2025Updated 9 months ago
- OWASP Foundation Web Respository☆56Jun 6, 2026Updated last month
- In this workshop we will build a pipeline for a sample WordPress site in a stack. We will explore how to validate, lint and test template…☆20Apr 28, 2022Updated 4 years ago