Tools and techniques for analyzing, reverse-engineering, and understanding malicious software. Task: Appsec
Explore 25 curated tools and resources
A tool for finding and exploiting SQL injection vulnerabilities in web applications
A command-line program for finding secrets and sensitive information in textual data and Git history.
A Burp intruder extender for automating and validating XSS vulnerabilities
Interactive .NET SQL console client with enhanced SQL Server discovery, access, and data exfiltration features
YaraHunter scans container images, running Docker containers, and filesystems to find indicators of malware.
A collection of Android Fakebank and Tizi samples for analyzing spyware on Android devices.
A Yara ruleset for detecting PHP shells and other webserver malware.
A collection of Android Applications with malware analysis results
A Burp plugin for identifying potential vulnerabilities in web applications
Tplmap is a tool for detecting and exploiting server-side template injection vulnerabilities.
Yara mode for GNU Emacs to edit Yara related files
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.