lunasec-io / damn-vulnerable-js-scaLinks
An intentionally vulnerable Javascript app containing notable vulnerabilities in its dependencies.
β19Updated 2 years ago
Alternatives and similar repositories for damn-vulnerable-js-sca
Users that are interested in damn-vulnerable-js-sca are comparing it to the libraries listed below
Sorting:
- An Open Letter to the OWASP Boardβ107Updated 2 years ago
- π§ͺ Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.β41Updated 11 months ago
- Unauthenticated enumeration of AWS IAM Roles.β26Updated 2 months ago
- A web fuzzer using the httpipe formatβ101Updated last year
- a hackbot proof-of-conceptβ40Updated last year
- EZGHSA is a command-line tool for summarizing and filtering vulnerability alerts on Github repositories.β35Updated 2 months ago
- HashiCorp-relevant rules for the Semgrep code analysis toolβ42Updated 2 years ago
- A project to visualize the software supply chainβ54Updated 2 years ago
- Manager of third-party sources of Semgrep rules πβ90Updated last year
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raiderβ139Updated 4 years ago
- RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs andβ¦β155Updated last year
- Function callpath mapping analysis tool for Goβ34Updated 8 months ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflowsβ113Updated last week
- AI Resilience Maturity Modelβ25Updated last year
- Security tool against dependency typosquatting attacksβ54Updated this week
- Semgrep-based Policy Controller for Kubernetesβ47Updated 7 months ago
- Trail of Bits Testing Handbookβ82Updated last week
- β49Updated 2 years ago
- A GitHub Action that creates a SBOM from your application so you can meet compliance and security requirements. Add this to your dev, staβ¦β25Updated 2 years ago
- πA cutting edge context aware GraphQL API fuzzing tool!β154Updated 2 months ago
- Deptective automatically determines the native dependencies required to run any arbitrary program or command.β123Updated 3 weeks ago
- A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or artβ¦β66Updated this week
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive filesβ227Updated 5 months ago
- PII detection platform, leveraging human-in-the-loop AIβ53Updated 11 months ago
- Scans every git push to your Github organisations to find unwanted secrets.β87Updated 6 months ago
- atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.β74Updated this week
- β114Updated 2 years ago
- MCP security wrapperβ202Updated this week
- Private key usage verificationβ432Updated 7 months ago
- MultiStep MCP That Returns CVE Information With EPSS Scoreβ12Updated 6 months ago