面向企业内部授权场景的 AI 代码安全审计框架。支持 redteam/full 两种模式,支持靶场集成验证,全程自动编排。适配 Cursor、Claude Code 及其他支持 Agent 调度的 AI IDE。
☆32May 28, 2026Updated 2 months ago
Alternatives and similar repositories for code-security-audit
Users that are interested in code-security-audit are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ghost-bits-encoder 是一个面向 Woodpecker 的辅助插件,围绕 Ghost Bits / Unicode 高位包装思路,提供通用编解码、JSON 相关编码、URL 相关编码以及若干专项辅助能力。☆54May 15, 2026Updated 2 months ago
- Windows 事件日志分析工具☆33Jul 13, 2026Updated 3 weeks ago
- Kubernetes Kubelet security assessment and privilege escalation toolkit☆15Feb 19, 2026Updated 5 months ago
- 云资产管理工具 目前工具定位是云安全相关工具,目前是两个模块 云存储工具、云服务工具, 云存储工具主要是针对oss存储、查看、删除、上传、下载、预览等等 云服务工具主要是针对rds、服务器的管理,查看、执行命令、接管等等☆15Oct 7, 2024Updated last year
- Java JDK 8-18 CodeQL databases☆17Jun 2, 2024Updated 2 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- 一款集成 CodeQL 静态分析和 LLM (大语言模型) 智能验证的半自动化代码审计工具☆31Jan 6, 2026Updated 6 months ago
- 二开KillWxapkg项目,添加实时 检测和开启web端服务☆52Nov 7, 2024Updated last year
- 用zig实现精简版的donut,可将exe/dll/elf转换为shellcode☆21Jun 2, 2026Updated 2 months ago
- 东方隐侠团队出品,代码审计skill☆135Feb 25, 2026Updated 5 months ago
- Exchange 信息收集工具☆54Jan 4, 2025Updated last year
- ☆249Apr 15, 2026Updated 3 months ago
- LC(List Cloud)是一个多云攻击面资产梳理工具☆650Oct 6, 2024Updated last year
- 一个基于 OpenForensicRules 标准化的数字取证与应急响应信息采集规则格式规范的采集器☆30Jul 8, 2025Updated last year
- 记录学习codeql的过程☆397Jun 9, 2023Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Vue 路由提取同时去除权限校验☆130Apr 15, 2026Updated 3 months ago
- PHP-Code-Audit-Skill是一个专注于PHP代码审计的Skill☆380Mar 25, 2026Updated 4 months ago
- 关于学习java安全的一些知识,正在学习中ing,欢迎fork and star☆13Dec 31, 2021Updated 4 years ago
- 暂停更新·······正在谋划······☆147Jun 28, 2024Updated 2 years ago
- 本程序为美国NSA的方程式工具包图形界面版,由ABC_123于2017年开始编写,仅用来扫描和验证MS17-010、MS09-050、MS08-067漏洞,并可协助管理员修复系统漏洞。☆568Jul 27, 2026Updated last week
- [ALL IN ONE] Everything that I shared to public about Cloud Security is here.☆66Apr 19, 2025Updated last year
- Claude Code plugin for Java JAR security audit — 基于 jar-analyzer 的 Claude Code 安全审计插件,构建数据库,AI 深入分析☆138Mar 20, 2026Updated 4 months ago
- 一个IDEA插件:一键收集项目中所有jar包依赖的工具插件。遍历项目目录收集所有jar文件,复制到all-in-one文件夹,并自动添加为项目库。☆55Oct 30, 2025Updated 9 months ago
- 存储桶遍历漏洞利用工具☆456Jul 24, 2026Updated last week
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- 用友NC系列漏洞检测利用工具,支持一键检测、命令执行回显、文件落地、一键打入内存马、文件读取等☆598Aug 19, 2023Updated 2 years ago
- 面向护网,攻防演练等场景下的小型蜜罐☆81Apr 18, 2024Updated 2 years ago
- 用java实现构造openwire协议,利用activeMQ < 5.18.3 RCE 回显利用 内存马注入☆289Nov 20, 2023Updated 2 years ago
- PHP文件上传50+绕过手法全景解析☆18Mar 16, 2025Updated last year
- 幽狼AI Shell:首款支持AI渗透的高级WebShell & C2管理工具,内置WebShell MCP服务器,支持多层内网级联的ASPX、ASHX高级WebShell管理工具,AES加密通信,无需代理,内存加载渗透工具,无文件落地隐蔽渗透目标,动态代码执行,Shell…☆261Updated this week
- WebStrike 是一套以 Chromium 系浏览器扩展(Manifest V3) 为受控端点的指挥与控制(C2)套件。与传统以进程/驱动为主的 C2 相比,其 工作重心落在 浏览器安全域:在合规授权与攻防演练场景下,可显著降低与终端 EDR 在 进程注入、驱动、内核回调…☆71Jul 8, 2026Updated 3 weeks ago
- 用友漏洞综合利用工具☆271Nov 9, 2024Updated last year
- Java Debugger MCP Server. Enables AI agents to debug live Java apps via JDI with breakpoints, stack tracing, and variable inspection.☆30Jan 30, 2026Updated 6 months ago
- 记录一些代码审计过的源码☆182Feb 26, 2025Updated last year
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- ZZCMS v8.2-重装GETSHELL工具☆11May 8, 2018Updated 8 years ago
- java-web 自动化鉴权绕过☆380Apr 3, 2025Updated last year
- 一款针对K8s综合利用GUI工具☆170Apr 26, 2026Updated 3 months ago
- NSFOCUS API_Sword:A Burp Suite extension, Automatically recursively collect API endpoints from any response☆413Jan 20, 2026Updated 6 months ago
- daydayExp的漏洞POC仓库,慢慢更新...☆379Nov 4, 2024Updated last year
- golang写的批量对目标网站进行截图的小工具,适合目标资产比较多时,快速定位薄弱点。☆32Oct 14, 2022Updated 3 years ago
- 一款专注于 Java 主流 Web 中间件的内存马快速生成工具,致力于简化安全研究人员和红队成员的工作流程,提升攻防效率☆1,567Updated this week