vulnerability-detection
Tracked open-source repos tagged vulnerability-detection, sorted by stars.
Related topics
Topics that frequently appear alongside vulnerability-detection on the same repo.
Recent risers
Repos created in the last 90 days, tagged vulnerability-detection.
- #1
Agent-driven automated CVE discovery platform for source code auditing, vulnerability verification, and report generation.
★ 1,386 - #2
A modular, stack-agnostic toolkit of security review skills for AI coding agents to autonomously find, reproduce, and patch vulnerabilities.
★ 1,035 - #3★ 872
- #1
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
★ 37,752+62Star change over the last 7 days - #2
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
★ 30,988+67Star change over the last 7 days - #3
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
★ 16,753+37Star change over the last 7 days - #4
Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
★ 16,273+19Star change over the last 7 days - #5
Community curated list of templates for the nuclei engine to find security vulnerabilities.
★ 12,905+25Star change over the last 7 days - #6
Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
★ 12,248+2Star change over the last 7 days - #7
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernetes users and administrators precious time, effort, and resources.
★ 11,718+15Star change over the last 7 days - #8
OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.
★ 7,682+7Star change over the last 7 days - #9
Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...
★ 6,169-2Star change over the last 7 days - #10
Open Source Cloud Native Application Protection Platform (CNAPP)
★ 5,320+2Star change over the last 7 days - #11
This repository contains the scanner component for Greenbone Community Edition.
★ 4,808+6Star change over the last 7 days - #12
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
★ 4,170+14Star change over the last 7 days - #13★ 3,780+0Star change over the last 7 days
- #14★ 3,597+0Star change over the last 7 days
- #15
Nmap NSE scripts that turn a service scan into CVEs, CVSS scores and known exploits — fingerprints software from HTTP responses and checks every detected CPE against the Vulners database.
★ 3,418+2Star change over the last 7 days - #16★ 2,758+11Star change over the last 7 days
- #17
Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.
★ 2,698+2Star change over the last 7 days - #18
cve-search - a tool to perform local searches for known vulnerabilities
★ 2,644+2Star change over the last 7 days - #19
Safety checks Python dependencies for known security vulnerabilities and suggests the proper remediations for vulnerabilities detected.
★ 1,995+0Star change over the last 7 days - #20
Kubernetes-native security toolkit
★ 1,932+0Star change over the last 7 days - #21
For basic researches, top 25 vulnerability parameters that can be used in automation tools or manual recon. 🛡️⚔️🧙
★ 1,848+1Star change over the last 7 days - #22
Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules through a very intuitive graphical interface.
★ 1,813+2Star change over the last 7 days - #23★ 1,783+0Star change over the last 7 days
- #24
An open source tool focused on software supply chain security. 墨菲安全专注于软件供应链安全,具备专业的软件成分分析(SCA)、漏洞检测、专业漏洞库。
★ 1,753+0Star change over the last 7 days - #25★ 1,688+0Star change over the last 7 days
- #26
Agent-driven automated CVE discovery platform for source code auditing, vulnerability verification, and report generation.
★ 1,386+39Star change over the last 7 days - #27
The community's most comprehensive, continuously-updated index of research on Large Language Models for software vulnerability detection — papers across function-level, repository-level, agentic, and smart-contract detection, plus datasets, benchmarks, and surveys.
★ 1,378+66Star change over the last 7 days - #28
Academic papers related to fuzzing, binary analysis, and exploit dev, which I want to read or have already read
★ 1,362+0Star change over the last 7 days - #29★ 1,217+2Star change over the last 7 days
- #30★ 1,203+4Star change over the last 7 days