Tools for identifying, prioritizing, and remediating security vulnerabilities in systems and applications.
Explore 166 curated tools and resources
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.
A cloud-native web application and API security solution that uses contextual AI to protect against known and zero-day threats without signature-based detection.
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
A tool for detecting and exploiting Android application vulnerabilities
A comprehensive online resource for application security knowledge
A local privilege escalation vulnerability in the Linux kernel known for its catchy name and potential damages.
A disclosure of a bug found in Twitter's Vine and the process of procuring the source code.
The Node.js Bug Bounty Program is a program aimed at identifying and fixing security vulnerabilities in the Node.js ecosystem.
The CVE Program catalogs publicly disclosed cybersecurity vulnerabilities.
A tool that showcases the attack surface of a given Android device, highlighting potential vulnerabilities and security risks.
A collection of real-world scenarios to evaluate command injection detection and exploitation abilities
WordPress security scanner for identifying vulnerabilities in WordPress websites.
A tool that checks for hijackable packages in NPM and Python Pypi registries
Next-generation Linux exploit suggester with improved features for finding privilege escalation vulnerabilities.
A massive SQL injection vulnerability scanner
CSET is a free software tool for identifying vulnerabilities in enterprise and industrial control cyber systems.
A vulnerable web site in NodeJS for testing security source code analyzers.