giacomobenedetti's Stars
eBay/sbom-scorecard
Generate a score for your sbom to understand if it will actually be useful.
kpcyrd/i-probably-didnt-backdoor-this
A practical experiment on supply-chain security using reproducible builds
ckaestne/gdoc2latex
ojj11/analyse-control
Control flow analysis for JavaScript
docker/docker-bench-security
The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.
samsarahq/thunder
⚡️ A Go framework for rapidly building powerful graphql services
ossillate-inc/packj
Packj stops :zap: Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain
nektos/act
Run your GitHub Actions locally 🚀
usememos/memos
An open-source, lightweight note-taking solution. The pain-less way to create your meaningful notes. Your Notes, Your Way.
H2SO4T/COSMO
Automatically instrument gradle-based applications and generate code coverage reports
Kronuz/esprima-python
ECMAScript parsing infrastructure for multipurpose analysis
tylertreat/BoomFilters
Probabilistic data structures for processing continuous, unbounded streams.
goreleaser/goreleaser
Deliver Go binaries as fast and easily as possible
safing/portmaster
🏔 Love Freedom - ❌ Block Mass Surveillance
unidoc/unioffice
Pure go library for creating and processing Office Word (.docx), Excel (.xlsx) and Powerpoint (.pptx) documents
spf13/cobra
A Commander for modern Go CLI interactions
Legit-Labs/legitify
Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets
gofiber/fiber
⚡️ Express inspired web framework written in Go
MilesCranmer/PySR
High-Performance Symbolic Regression in Python and Julia
michenriksen/gitrob
Reconnaissance tool for GitHub organizations
go-mojito/mojito
Code your next Go web project with (a) Mojito! Mojito is a super-modular, fast, opinion-less framework to bootstrap your next Go web project.
parsiya/Hacking-with-Go
Golang for Security Professionals
canonical/lxd
Powerful system container and virtual machine manager
TheAlgorithms/Rust
All Algorithms implemented in Rust
skydive-project/skydive
An open source real-time network topology and protocols analyzer
anchore/grype
A vulnerability scanner for container images and filesystems
SAP/credential-digger
A Github scanning tool that identifies hardcoded credentials while filtering the false positive data through machine learning models :lock:
scribe-public/gitgat
Evaluate source control (GitHub) security posture
ClaudiuGeorgiu/Obfuscapk
An automatic obfuscation tool for Android apps that works in a black-box fashion, supports advanced obfuscation features and has a modular architecture easily extensible with new techniques
SAP/project-foxhound
A web browser with dynamic data-flow tracking enabled in the Javascript engine and DOM, based on Mozilla Firefox (https://github.com/mozilla/gecko-dev). It can be used to identify insecure data flows or data privacy leaks in client-side web applications.