xihuni's Stars
wagoodman/dive
A tool for exploring each layer in a docker image
trufflesecurity/trufflehog
Find, verify, and analyze leaked credentials
gojue/ecapture
Capturing SSL/TLS plaintext without a CA certificate using eBPF. Supported on Linux/Android kernels for amd64/arm64.
google/magika
Detect file content types with deep learning
joxeankoret/diaphora
Diaphora, the most advanced Free and Open Source program diffing tool.
deepfence/SecretScanner
:unlock: :unlock: Find secrets and passwords in container images and file systems :unlock: :unlock:
e-m-b-a/emba
EMBA - The firmware security analyzer
sa7mon/S3Scanner
Scan for misconfigured S3 buckets across S3-compatible APIs!
googleprojectzero/fuzzilli
A JavaScript Engine Fuzzer
not-an-aardvark/lucky-commit
Customize your git commit hashes!
revng/revng
revng: the core repository of the rev.ng project
corkami/mitra
A generator of weird files (binary polyglots, near polyglots, polymocks...)
SafeBreach-Labs/PoolParty
A set of fully-undetectable process injection techniques abusing Windows Thread Pools
mandiant/GoReSym
Go symbol recovery tool
DissectMalware/XLMMacroDeobfuscator
Extract and Deobfuscate XLM macros (a.k.a Excel 4.0 Macros)
mandiant/capa-rules
Standard collection of rules for capa: the tool for enumerating the capabilities of programs
strongcourage/awesome-directed-fuzzing
A curated list of awesome directed fuzzing research papers
ossf/fuzz-introspector
Fuzz Introspector -- introspect, extend and optimise fuzzers
chainguard-dev/ssc-reading-list
A reading list for software supply-chain security.
SAP/credential-digger
A Github scanning tool that identifies hardcoded credentials while filtering the false positive data through machine learning models :lock:
SecurityFail/kompromat
Private keys that have become public ...
leandrofroes/gftrace
A command line Windows API tracing tool for Golang binaries.
Polydet/polyglot-database
Database of polyglot files. By polyglot, we mean files readable in multiple formats
digicert/pkilint
A framework for verifying PKI structures
jregele/grawler
Extract deleted secrets from git repos
robstradling/authroot.stl
Windows Automatic Root Update History
Polydet/polydet
Polyglot detector
BUseclab/FirmSolo
ucsb-seclab/symbexcel
decentL/Understanding-the-Security-Risks-of-Docker-Hub