phylum-dev / vuln-reachLinks
A library for building tools to determine if vulnerabilities are reachable in a code base.
☆14Updated 9 months ago
Alternatives and similar repositories for vuln-reach
Users that are interested in vuln-reach are comparing it to the libraries listed below
Sorting:
- Python implementation of SafeURL (Anti-SSRF Lib)☆11Updated 9 months ago
- ☆10Updated 5 months ago
- excrypto offers specialized versions of the Go crypto, TLS, x509, and SSH packages designed for security research.☆13Updated 2 weeks ago
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- A Platform for Testing Secure Coding/Config☆18Updated 6 years ago
- ☆13Updated 4 years ago
- ☆11Updated 4 months ago
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆74Updated last year
- ☆22Updated 3 years ago
- Bad packages from the pypi repository☆9Updated 6 years ago
- ☆26Updated 2 years ago
- Scan pypi for typosquatting☆36Updated 2 years ago
- Salesforce Policy Deviation Checker☆30Updated 4 years ago
- SARIF Explorer: A VSCode extension that helps you visualize and triage static analysis results☆27Updated this week
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆28Updated 3 months ago
- Trail of Bits Testing Handbook☆74Updated last week
- UniSBOM is a tool to build a software bill of materials on any platform with a unified data format.☆35Updated 2 years ago
- egrets monitors egress☆46Updated 5 years ago
- Reference architecture and proof of concept implementation for supply chain security gateway☆23Updated 2 years ago
- It records your terminal, then lets you upload to ASHIRT☆27Updated 2 months ago
- Fork Free Fail Repeat☆48Updated 3 years ago
- Labeled vulnerability-package match pairs used as ground truth to evaluate vulnerability scanners☆11Updated this week
- GoLang Scripting Expert, a repo for template scripts regarding basic golang functions, many with a security focus☆22Updated 4 years ago
- Documentation of Semgrep: a fast, open-source, static analysis tool.☆41Updated this week
- ☆44Updated 10 months ago
- ☆25Updated 6 years ago
- Userland exec PoC to be used as attack vector technique☆85Updated 4 months ago
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆31Updated last year
- Proof of Concept exploit for Kubernetes CVE-2020-8559☆20Updated 4 years ago
- ☆16Updated 11 months ago