trailofbits / vendetectLinks
A tool to automatically detect copy+pasted and vendored code between repositories
☆72Updated 2 weeks ago
Alternatives and similar repositories for vendetect
Users that are interested in vendetect are comparing it to the libraries listed below
Sorting:
- Data about all known supply-chain attacks through history☆61Updated 5 months ago
- Deptective automatically determines the native dependencies required to run any arbitrary program or command.☆123Updated 2 weeks ago
- An open-source security suite aiming to combine structural code analysis with AI-powered vulnerability detection. Built for advanced stru…☆81Updated last week
- Trail of Bits Testing Handbook☆82Updated this week
- Automated vulnerability discovery and annotation☆67Updated last year
- Security tool against dependency typosquatting attacks☆54Updated this week
- MCP Snitch is a macOS application that intercepts and monitors MCP server communications, providing security analysis, access control, an…☆79Updated last month
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆41Updated 11 months ago
- Metis is an open-source, AI-driven tool for deep security code review☆83Updated this week
- 💅🏽 analyzes your github actions☆96Updated last month
- PoC shadow SaaS and insecure credential detection system using a browser extension.☆42Updated 3 months ago
- Secure Code Review AI Agent (SeCoRA) - AI SAST☆53Updated 9 months ago
- EZGHSA is a command-line tool for summarizing and filtering vulnerability alerts on Github repositories.☆35Updated 2 months ago
- ☆85Updated 2 weeks ago
- ☆72Updated 3 weeks ago
- A very simple open source implementation of Google's Project Naptime☆173Updated 7 months ago
- Post-Quantum Cryptography Scanner - Scan SSH/TLS servers for PQC support☆92Updated this week
- eBPF Memory Dump Tool☆90Updated 2 months ago
- SecureMCP is a security auditing tool designed to detect vulnerabilities and misconfigurations in applications using the [Model Context P…☆133Updated 5 months ago
- An OpenAI API Compatible Honeypot Gateway☆16Updated 7 months ago
- A tool for folks who `git clone` first and ask questions later☆60Updated 2 months ago
- MCP security wrapper☆202Updated 2 weeks ago
- A comprehensive security scanner for Model Context Protocol (MCP) servers that detects vulnerabilities and security issues in your MCP se…☆107Updated 3 weeks ago
- ChainReactor is a research project that leverages AI planning to discover exploitation chains for privilege escalation on Unix systems. T…☆52Updated last year
- atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.☆73Updated last week
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆59Updated 9 months ago
- An interactive CLI application for interacting with authenticated Jupyter instances.☆55Updated 6 months ago
- Performing secure code review with LLMs (and vibe coding IDEs)☆28Updated 3 months ago
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆74Updated 2 years ago
- CodeQL queries developed by Trail of Bits☆135Updated 3 weeks ago