Direktori skill

Temukan skill yang dapat digunakan kembali untuk AI agents.

Cari skill GitHub nyata berdasarkan tugas lalu periksa stars, trust, audit, kategori, dan jalur pemasangan sebelum digunakan.

Setiap rekomendasi tetap terhubung dengan repositori, audit, dan jalur pemasangannya.

Hasil pencarian: exploiting-vulnerabilities

Direktori bahasa Inggris

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

36K
Stars
86/100
Kepercayaan
Kategori: devopsAudit

Open-source & free — Battle-tested at Alibaba's scale. Hybrid architecture code review tool: deterministic pipelines + LLM Agent, precise line-level comments, built-in fine-tuned ruleset (NPE, thread-safety, XSS, SQL injection), OpenAI & Anthropic compatible.

21K
Stars
86/100
Kepercayaan
Kategori: developmentAudit

Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.

29K
Stars
87/100
Kepercayaan
Kategori: securityAudit

Security scanner for AI agent skills. Detect vulnerabilities, malicious patterns, and security risks.

14K
Stars
88/100
Kepercayaan
Kategori: agent-skillsAudit

Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.

8.8K
Stars
85/100
Kepercayaan
Kategori: developmentAudit

A PHP static analysis tool for finding errors and security vulnerabilities in PHP applications

5.9K
Stars
86/100
Kepercayaan
Kategori: developmentAudit

Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities

1.4K
Stars
78/100
Kepercayaan
Kategori: github-automationAudit

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

1.3K
Stars
77/100
Kepercayaan
Kategori: developmentAudit

Appshark is a static taint analysis platform to scan vulnerabilities in an Android app.

1.7K
Stars
83/100
Kepercayaan
Kategori: developmentAudit

OpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the community.

1.1K
Stars
77/100
Kepercayaan
Kategori: developmentAudit

Autonomously improve a real artifact (code, training recipe, agent harness, data pipeline, prompt) against an objective and an evaluator, using Hypothesis Tree Refinement (HTR) from the Arbor paper. Use this whenever someone wants to iteratively optimize something over many experiments without overfitting — e.g. "get my model's eval score up", "improve this agent/harness", "tune this pipeline", "beat the baseline on this benchmark", "run a search over approaches and keep the best", "do an MLE-bench / Kaggle-style optimization", or any long-horizon "make this artifact better and don't just memorize the dev set" task. Trigger it even when the user doesn't say "Arbor" or "hypothesis tree" but describes repeated experiment-and-evaluate loops, branching exploration of competing ideas, or worries about a dev/test gap. Runs Claude itself as the coordinator with subagent executors in isolated git worktrees; for the standalone `arbor` CLI tool see references/arbor-upstream.md.

34K
Stars
77/100
Kepercayaan
Kategori: researchAudit

Understand a codebase before looking for bugs in it - what each function assumes, what it guarantees, and what it depends on elsewhere. Use when starting an audit, threat model, or architecture review on unfamiliar code, and before any vulnerability-hunting pass.

6.8K
Stars
75/100
Kepercayaan
Kategori: securityAudit