Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
-
Updated
Apr 26, 2022 - Go
{{ message }}
Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
Vulnerability Static Analysis for Containers
OSS-Fuzz - continuous fuzzing for open source software.
A static analysis security vulnerability scanner for Ruby on Rails applications
Scalable fuzzing infrastructure.
A list of web application security
Snyk CLI scans and monitors your projects for security vulnerabilities.
What would you like to be added:
Please add some basic instructions for compiling the binaries to the install readme as an alternative to curl to bash.
Why is this needed:
Some folks are uncomfortable with the security implications of curl to bash
There are additional use cases where users may wish to modify the functionality of the project to better fit their needs
**Addit
快速搭建各种漏洞环境(Various vulnerability environment)
scanner detecting the use of JavaScript libraries with known vulnerabilities
Gather and update all available and newest CVEs with their PoC.
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能
Awesome Node.js Security resources
Centralize Vulnerability Assessment and Management for DevSecOps Team
cve-search - a tool to perform local searches for known vulnerabilities
A database of PHP security advisories
finds publicly known security vulnerabilities in a website's frontend JavaScript libraries
HackSys Extreme Vulnerable Windows Driver
release-1.5 #148bcrypt-nodejs in package.jsonbcrypt in package.jsonThe Swiss Army knife for automated Web Application Testing
Is this a request for help?: Yes
Is this a BUG REPORT or a FEATURE REQUEST? (choose one): FEATURE REQUEST
Can we add a option to allow the engine update vulnerabilities database through specific proxy ser
Examples of Solidity security issues
An step by step fuzzing tutorial. A GitHub Security Lab initiative
This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection.
The current swagger definition is autogenerated. The automatically generated definitions rely on reflection and annotations to create the documentation. The reflection capabilities are poor at best and lead to missing API parameters. Annotations can help in some cases, but the only fix for Swagger is to create individual POJOs for every possible request. This will lead to unnecessary large number
Linux Binary Exploitation
Is your feature request related to a problem?
Sometimes its hard to know the vendor for a product in the "my products" list, eg. if the product's name is "4221" (-> Cisco).
Do you have a solution in mind, or a suggestion to improve OpenCVE?
In /account/subscriptions it would be great to have the vendor name and the product name in one line.
CPE 2.3 string would be additionally a gre
Add a description, image, and links to the vulnerabilities topic page so that developers can more easily learn about it.
To associate your repository with the vulnerabilities topic, visit your repo's landing page and select "manage topics."
I note that there is a check whether the cluster is deployed into Azure Cloud .. see below.
I don't have a problem with that per se except that in a corporate environment I don't want to request a proxy whitelist exception with my CISO for an endpoint that we have no use for (http://www.azurespeed.com). Moreover, whilst this test will eventually timeout and the checks resume, it delays the pro