Gather and update all available and newest CVEs with their PoC.
-
Updated
Mar 23, 2023 - HTML
Gather and update all available and newest CVEs with their PoC.
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
Asset inventory on public bug bounty programs.
Integrates Dependency-Check reports into SonarQube
《macOS软件安全与逆向分析》随书源码
Keyshuffling Attack for Persistent Early Code Execution in the Nintendo 3DS Secure Bootchain
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs).
CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, OBOM, VDR, and VEX
Monitoring exploits & references for CVEs
A simple Java command-line utility to mirror the CVE JSON data from NIST.
Jenkins plugin for OWASP Dependency-Check. Inspects project components for known vulnerabilities (e.g. CVEs).
Find CVE PoCs on GitHub
Trickest Workflow for discovering log4j vulnerabilities and gathering the newest community payloads.
A Java library for parsing and programmatically using threat models
Integrates OWASP Zed Attack Proxy reports into SonarQube
A Github repository I created while studying the Software Security course on Coursera. I made the repository public to discuss solutions with like-minded developers.
A simple Java command-line utility to mirror the entire contents of VulnDB.
Vendor-Neutral Security Tool Automation Controller (over REST)
SIde-Channel Analysis toolKit: embedded security evaluation tools
Add a description, image, and links to the software-security topic page so that developers can more easily learn about it.
To associate your repository with the software-security topic, visit your repo's landing page and select "manage topics."