referefref / gitdoorcheck
Static code analyser for backdoors and malicious code in git repos using OpenAI compatible LLM APIs
☆71Updated 10 months ago
Alternatives and similar repositories for gitdoorcheck:
Users that are interested in gitdoorcheck are comparing it to the libraries listed below
- Nuclei plugins to audit Chrome extensions☆64Updated 6 months ago
- AuditForge is a pentest reporting application making it simple and easy to write your findings and generate a customizable report.☆51Updated 2 weeks ago
- Semgrep-based Policy Controller for Kubernetes☆24Updated 2 months ago
- Stalker, the Extensible Attack Surface Management tool.☆79Updated this week
- Tool for obfuscating and deobfuscating data.☆67Updated 9 months ago
- Identify hardcoded secrets in static structured text (version 2)☆90Updated this week
- a hackbot proof-of-concept☆37Updated 10 months ago
- Modular web-application honeypot platform built using go and gin☆54Updated 8 months ago
- EZGHSA is a command-line tool for summarizing and filtering vulnerability alerts on Github repositories.☆35Updated 3 weeks ago
- Build a CVE library with aggregated CISA, EPSS and CVSS data☆27Updated last year
- RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and…☆144Updated last month
- Independently deploy customized honeyservices in AWS to trigger alerts on unauthorized access. It utilizes a dedicated CloudTrail for pre…☆47Updated 2 months ago
- Use AI to Scan Your Code from the Command Line for security and code smells. Bring your own keys. Supports OpenAI and Gemini☆154Updated 10 months ago
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆37Updated last month
- YouShallNotPass brings an added level of execution security to mission-critical CI/CD Systems.☆36Updated last year
- ☆69Updated 10 months ago
- Security tool against dependency typosquatting attacks☆39Updated this week
- A Pentest Collaboration and Reporting Tool☆53Updated last week
- Simple Workspace Attack Tool (SWAT) is a tool for simulating malicious behavior against Google Workspace in reference to the MITRE ATT&CK…☆164Updated 3 months ago
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆214Updated 3 weeks ago
- A Caldera plugin for the emulation of complete, realistic cyberattack chains.☆45Updated 2 months ago
- A tool to uncover undocumented APIs from the AWS Console.☆94Updated last month
- A tool for scanning public or private AMIs for sensitive files and secrets. The tool follows the research made on AWS CloudQuarry where w…☆97Updated 2 months ago
- Crawlector is a threat hunting framework designed for scanning websites for malicious objects.☆126Updated last year
- A Powerful Network Reconnaissance Tool for Security Professionals☆100Updated 2 weeks ago
- ☆110Updated last year
- Canary Detection☆163Updated 9 months ago
- boostsecurityio/lotp☆110Updated last month
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆132Updated 2 weeks ago
- ☆62Updated last month