293 skills found · Page 1 of 10
aquasecurity / TrivyFind vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
projectdiscovery / NucleiNuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
usestrix / StrixOpen-source AI hackers to find and fix your app’s vulnerabilities.
projectdiscovery / Nuclei TemplatesCommunity curated list of templates for the nuclei engine to find security vulnerabilities.
bridgecrewio / CheckovPrevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
RetireJS / Retire.jsscanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.
Checkmarx / KicsFind security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.
lirantal / Is Website Vulnerablefinds publicly known security vulnerabilities in a website's frontend JavaScript libraries
rasta-mouse / SherlockPowerShell script to quickly find missing software patches for local privilege escalation vulnerabilities.
BullsEye0 / Google Dork ListGoogle Dorks | Google helps you to find Vulnerable Websites that Indexed in Google Search Results. Here is the latest collection of Google Dorks. A collection of 13.760 Dorks. Author: Jolanda de Koff
trailofbits / ButtercupButtercup finds and patches software vulnerabilities
fkie-cad / Cwe Checkercwe_checker finds vulnerable patterns in binary executables
bridgecrewio / TerragoatTerraGoat is Bridgecrew's "Vulnerable by Design" Terraform repository. TerraGoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.
AndroBugs / AndroBugs FrameworkAndroBugs Framework is an efficient Android vulnerability scanner that helps developers or hackers find potential security vulnerabilities in Android applications. No need to install on Windows.
d3ckx1 / FvulnF-vuln(全称:Find-Vulnerability)是为了自己工作方便专门编写的一款自动化工具,主要适用于日常安全服务、渗透测试人员和RedTeam红队人员,它集合的功能包括:存活IP探测、开放端口探测、web服务探测、web漏洞扫描、smb爆破、ssh爆破、ftp爆破、mssql爆破等其他数据库爆破工作以及大量web漏洞检测模块。
writeups / IOSHere you can find write ups for iOS Vulnerabilities that have been released.
Group3r / Group3rFind vulnerabilities in AD Group Policy, but do it better than Grouper2 did.
doyensec / RegexploitFind regular expressions which are vulnerable to ReDoS (Regular Expression Denial of Service)
BullsEye0 / Dorks EyeDorks Eye Google Hacking Dork Scraping and Searching Script. Dorks Eye is a script I made in python 3. With this tool, you can easily find Google Dorks. Dork Eye collects potentially vulnerable web pages and applications on the Internet or other awesome info that is picked up by Google's search bots. Author: Jolanda de Koff
RenwaX23 / XSSTRONElectron JS Browser To Find XSS Vulnerabilities Automatically