lunasec-io / damn-vulnerable-js-scaLinks
An intentionally vulnerable Javascript app containing notable vulnerabilities in its dependencies.
☆19Updated 2 years ago
Alternatives and similar repositories for damn-vulnerable-js-sca
Users that are interested in damn-vulnerable-js-sca are comparing it to the libraries listed below
Sorting:
- An Open Letter to the OWASP Board☆107Updated 2 years ago
- A web fuzzer using the httpipe format☆101Updated last year
- Unauthenticated enumeration of AWS IAM Roles.☆25Updated last month
- Scans every git push to your Github organisations to find unwanted secrets.☆87Updated 5 months ago
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆41Updated 10 months ago
- ☆30Updated 4 years ago
- HashiCorp-relevant rules for the Semgrep code analysis tool☆42Updated 2 years ago
- Sample code for finding AWS Account ID of an S3 bucket.☆50Updated last year
- A project to visualize the software supply chain☆53Updated 2 years ago
- RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and…☆153Updated 11 months ago
- Deptective automatically determines the native dependencies required to run any arbitrary program or command.☆121Updated last month
- Security tool against dependency typosquatting attacks☆54Updated this week
- Semgrep-based Policy Controller for Kubernetes☆47Updated 6 months ago
- Function callpath mapping analysis tool for Go☆34Updated 7 months ago
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆227Updated 4 months ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 4 years ago
- ☆49Updated 2 years ago
- a hackbot proof-of-concept☆40Updated last year
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆138Updated 2 weeks ago
- A tool for quickly evaluating IAM permissions in AWS.☆74Updated last year
- Manager of third-party sources of Semgrep rules 🗂☆89Updated last year
- A lightweight library to sanitize data provided to AI tools☆28Updated 2 years ago
- An open-source security suite aiming to combine structural code analysis with AI-powered vulnerability detection. Built for advanced stru…☆81Updated last week
- MultiStep MCP That Returns CVE Information With EPSS Score☆11Updated 5 months ago
- A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or art…☆59Updated last week
- 🔍A cutting edge context aware GraphQL API fuzzing tool!☆151Updated last month
- Data about all known supply-chain attacks through history☆60Updated 4 months ago
- A simple touchID prompt'er for use in shell scripts.☆99Updated last year
- A Server Side Request Forgery (SSRF) protection library. Made with 🖤 by Doyensec LLC.☆107Updated 4 months ago
- AI featured threat modeling and security review action☆44Updated 11 months ago