Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
OSS-Fuzz - continuous fuzzing for open source software.
Vulnerability Static Analysis for Containers
grype 是一款针对容器镜像和文件系统的漏洞扫描器
A static analysis security vulnerability scanner for Ruby on Rails applications
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
A list of web application security
Snyk CLI scans and monitors your projects for security vulnerabilities.
Hunt for security weaknesses in Kubernetes clusters
📦 Make security testing of K8s, Docker, and Containerd easier.
scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.
快速搭建各种漏洞环境(Various vulnerability environment)
An step by step fuzzing tutorial. A GitHub Security Lab initiative
Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
Awesome Node.js Security resources
HackSys Extreme Vulnerable Driver (HEVD) - Windows & Linux