candrayasa's starred repositories

vulnerablecode

A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sponsored by NLnet https://nlnet.nl/project/vulnerabilitydatabase/ for https://www.aboutcode.org/ Chat at https://gitter.im/aboutcode-org/vulnerablecode Docs at https://vulnerablecode.readthedocs.org/

Language:PythonLicense:Apache-2.0Stargazers:505Issues:0Issues:0

dg

[LLVM Static Slicer] Various program analyses, construction of dependence graphs and program slicing of LLVM bitcode.

Language:C++License:MITStargazers:476Issues:0Issues:0

PhpDependencyAnalysis

Static code analysis to find violations in a dependency graph

Language:PHPLicense:MITStargazers:561Issues:0Issues:0

dep-tree

Tool for helping developers keep their code bases clean and decoupled. It allows visualising a code base complexity using a 3d force-directed graph of files and the dependencies between them.

Language:GoLicense:MITStargazers:1407Issues:0Issues:0

dephell

:package: :fire: Python project management. Manage packages: convert between formats, lock, install, resolve, isolate, test, build graph, show outdated, audit. Manage venvs, build package, bump version.

Language:PythonLicense:MITStargazers:1768Issues:0Issues:0

vulnerability-db

Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.0, purl, and vers.

Language:PythonLicense:MITStargazers:85Issues:0Issues:0

cycode-cli

Boost security in your dev lifecycle via SAST, SCA, Secrets & IaC scanning

Language:PythonLicense:MITStargazers:85Issues:0Issues:0

awesome-sca

A curated list of Software Component Analysis (SCA) books, courses - free and paid, videos, tools, and tutorials.

License:CC0-1.0Stargazers:95Issues:0Issues:0

scancode.io

ScanCode.io is a server to script and automate software composition analysis pipelines with ScanPipe pipelines. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ Google Summer of Code, nexB and others generous sponsors!

Language:PythonLicense:Apache-2.0Stargazers:95Issues:0Issues:0

grepmarx

A source code static analysis platform for AppSec enthusiasts.

Language:PythonLicense:MITStargazers:194Issues:0Issues:0

cdxgen

Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server. Slack: https://cyclonedx.slack.com/archives/C04NFFE1962

Language:JavaScriptLicense:Apache-2.0Stargazers:503Issues:0Issues:0

dep-scan

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.

Language:PythonLicense:MITStargazers:953Issues:0Issues:0

OpenSCA-cli

OpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the community.

Language:GoLicense:Apache-2.0Stargazers:1034Issues:0Issues:0

ort

A suite of tools to automate software compliance checks.

Language:KotlinLicense:Apache-2.0Stargazers:1532Issues:0Issues:0

scancode-toolkit

:mag: ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase, the Google Summer of Code, Azure credits, nexB and others generous sponsors!

Language:PythonStargazers:2028Issues:0Issues:0

dependency-track

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

Language:JavaLicense:Apache-2.0Stargazers:2463Issues:0Issues:0

dev-binder-tool

A linux tool for /dev/binder that does not need any special external include or library

Language:CStargazers:7Issues:0Issues:0

AutoNmap

Automated daily scan using Nmap and report on the differences

Language:ShellStargazers:16Issues:0Issues:0

peachpro

Dockerfile for peach pro with everything set up as needed

Language:DockerfileStargazers:20Issues:0Issues:0

vulntest

Static code analysis test source code

Language:CLicense:BSD-3-ClauseStargazers:31Issues:0Issues:0

audit_scripts

Scripts to gather system configuration information for offline/remote auditing

Language:ShellLicense:AGPL-3.0Stargazers:71Issues:0Issues:0

thc-ipv6

IPv6 attack toolkit

Language:CLicense:AGPL-3.0Stargazers:1001Issues:0Issues:0
Language:CLicense:AGPL-3.0Stargazers:9303Issues:0Issues:0

awesome-web-security

🐶 A curated list of Web Security materials and resources.

Stargazers:11077Issues:0Issues:0

hacker-roadmap

A collection of hacking tools, resources and references to practice ethical hacking.

License:MITStargazers:12945Issues:0Issues:0

Awesome-Hacking-Resources

A collection of hacking / penetration testing resources to make you better!

License:GPL-3.0Stargazers:14974Issues:0Issues:0

h4cker

This repository is primarily maintained by Omar Santos (@santosomar) and includes thousands of resources related to ethical hacking, bug bounties, digital forensics and incident response (DFIR), artificial intelligence security, vulnerability research, exploit development, reverse engineering, and more.

Language:Jupyter NotebookLicense:MITStargazers:17295Issues:0Issues:0

docker-compose-node-redis

if you want to run Node in docker for both dev and prod env , it would be super useful for you

Language:DockerfileStargazers:12Issues:0Issues:0

anything-llm

The all-in-one Desktop & Docker AI application with full RAG and AI Agent capabilities.

Language:JavaScriptLicense:MITStargazers:17526Issues:0Issues:0

ollama

Get up and running with Llama 3, Mistral, Gemma 2, and other large language models.

Language:GoLicense:MITStargazers:79102Issues:0Issues:0