panki27 / npm-manifest-check
Check NPM packages for manifest confusion
☆44Updated last year
Related projects ⓘ
Alternatives and complementary repositories for npm-manifest-check
- EZGHSA is a command-line tool for summarizing and filtering vulnerability alerts on Github repositories.☆35Updated 5 months ago
- ☆53Updated 6 months ago
- Tool for obfuscating and deobfuscating data.☆64Updated 8 months ago
- An open-source collection of API key rotation tutorials.☆60Updated 2 months ago
- ☆38Updated 4 months ago
- An Open Letter to the OWASP Board☆106Updated last year
- Security tool against dependency typosquatting attacks☆34Updated this week
- Static code analyser for backdoors and malicious code in git repos using OpenAI compatible LLM APIs☆69Updated 8 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆57Updated last year
- PWN is an open security automation framework that aims to stand on the shoulders of security giants, promoting trust and innovation.☆35Updated 3 weeks ago
- Use AI to Scan Your Code from the Command Line for security and code smells. Bring your own keys. Supports OpenAI and Gemini☆149Updated 8 months ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆79Updated this week
- ☆28Updated 3 months ago
- YouShallNotPass brings an added level of execution security to mission-critical CI/CD Systems.☆36Updated 10 months ago
- Nuclei plugins to audit Chrome extensions☆64Updated 4 months ago
- Modular web-application honeypot platform built using go and gin☆54Updated 6 months ago
- ☆47Updated last year
- A project to visualize the software supply chain☆36Updated last year
- DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.☆36Updated 3 years ago
- A tool to uncover undocumented APIs from the AWS Console.☆83Updated this week
- ☆54Updated last year
- a hackbot proof-of-concept☆34Updated 8 months ago
- Cloud Commotion intends to cause chaos to simulate security incidents☆140Updated 5 months ago
- HashiCorp-relevant rules for the Semgrep code analysis tool☆37Updated last year
- Independently deploy customized honeyservices in AWS to trigger alerts on unauthorized access. It utilizes a dedicated CloudTrail for pre…☆44Updated this week
- This tool analyzes a given Gitlab repository and searches for dangling or force-pushed commits containing potential secret or interesting…☆39Updated 3 months ago
- A tool for quickly evaluating IAM permissions in AWS.☆70Updated 5 months ago
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆33Updated last month
- AuditForge is a pentest reporting application making it simple and easy to write your findings and generate a customizable report.☆46Updated this week
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and disc…☆119Updated 5 months ago