boringtools / git-alertsLinks
Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files
☆227Updated last month
Alternatives and similar repositories for git-alerts
Users that are interested in git-alerts are comparing it to the libraries listed below
Sorting:
- boostsecurityio/lotp☆137Updated 2 months ago
- ☆114Updated 2 years ago
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆314Updated 3 months ago
- Tools to assess DNS security.☆153Updated last year
- A tool for scanning public or private AMIs for sensitive files and secrets. The tool follows the research made on AWS CloudQuarry where w…☆113Updated last year
- Nuclei plugins to audit Chrome extensions☆65Updated last year
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆120Updated 2 years ago
- tool designed for identifying vulnerabilities in open source codebases at scale. It can gather and filter on key repository metrics such …☆234Updated 11 months ago
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆140Updated 2 months ago
- ☆193Updated 8 months ago
- openrisk is a tool that generates a risk score based on the results of a Nuclei scan.☆180Updated 3 weeks ago
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆142Updated last year
- A web CTF for training developers in bug hunting and secure coding!☆100Updated last year
- Protect against subdomain takeover☆95Updated 5 months ago
- Identify hardcoded secrets in static structured text (version 2)☆96Updated 11 months ago
- MetaHub is an automated contextual security findings enrichment and impact evaluation tool for vulnerability management.☆177Updated last month
- Customized CVE FEED Notifier☆114Updated 8 months ago
- Secrets scanner that understands code☆191Updated 2 years ago
- A collection of Turbo Intruder scripts.☆66Updated 11 months ago
- A research project to add some brrrrrr to Burp☆196Updated 11 months ago
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆278Updated last year
- A tool to uncover undocumented APIs from the AWS Console.☆115Updated 8 months ago
- A multifaceted security tool which leverages Public GitHub REST APIs for OSINT, Forensics, Pentesting and more.☆169Updated this week
- A simple script which implements different Cognito attacks such as Account Oracle or Priviledge Escalation☆109Updated last year
- A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.☆237Updated 2 years ago
- ☆314Updated 6 months ago
- Websec interview questions by tib3rius answered☆307Updated 2 years ago
- find dangling domains in a multi cloud environment☆174Updated 2 weeks ago
- Vulnerability scanner for AWS customer managed policies using ChatGPT☆167Updated 2 years ago
- Static code analyser for backdoors and malicious code in git repos using OpenAI compatible LLM APIs☆73Updated last year