Raven is a runtime application protection platform that focuses on three main areas: Runtime Vulnerability Management: Analyzes application behavior during execution to determine if vulnerable libraries pose actual risks, helping to prioritize remediation efforts. Runtime Patching: Provides protection mechanisms at the library level to prevent exploitation of known vulnerabilities without requiring immediate code changes. Runtime Application Detection and Response (ADR): Monitors application behavior to detect and respond to potential security threats, including both CVE and non-CVE based attacks. The platform operates across various cloud environments, including Kubernetes clusters, containers, and compute instances, supporting multiple programming languages including Python, Ruby, C, C++, JavaScript, Go, Scala, Java, and PHP. Deployment requires minimal setup and operates with low overhead in production environments, providing continuous monitoring and protection of applications during execution.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A tool to conduct preliminary security checks in code, infrastructure, or IAM configurations using various open-source tools.
An API security platform that provides automated security testing, runtime protection, and lifecycle management for APIs through integrated tools and controls.
An open-source tool for detecting and analyzing Android apps' vulnerabilities and security issues.
An Application Security Posture Management platform that provides visibility, security controls, and automated workflows across the software development lifecycle from code to cloud.
A Rust-based command-line tool for analyzing .apk files to detect vulnerabilities.
A set of 48 practical programming exercises in cryptography and application security
A static code analysis tool for parsing common data formats to detect hardcoded credentials and dangerous functions.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.