Ausnahme gefangen: SSL certificate problem: certificate is not yet valid ๐Ÿ“Œ SCodeScanner - Stands For Source Code Scanner Where The User Can Scans The Source Code For Finding The Critical Vulnerabilities

๐Ÿ  Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeitrรคge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden รœberblick รผber die wichtigsten Aspekte der IT-Sicherheit in einer sich stรคndig verรคndernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch รผbersetzen, erst Englisch auswรคhlen dann wieder Deutsch!

Google Android Playstore Download Button fรผr Team IT Security



๐Ÿ“š SCodeScanner - Stands For Source Code Scanner Where The User Can Scans The Source Code For Finding The Critical Vulnerabilities


๐Ÿ’ก Newskategorie: IT Security Nachrichten
๐Ÿ”— Quelle: kitploit.com


SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities. The main objective for this scanner is to find the vulnerabilities inside the source code before code gets published in Prod.


Features

  1. Supported PHP Language
  2. Supported YAML Language
  3. Pass results to bug tracking services like Jira also Slack (Sending files to group to multiple people at once).
  4. Gives results in JSON format, which can easily be used to any other program.
  5. Works with Rules. We only need to create some rules which the target rule is not present in php/yaml directory.
  6. Rules that can scan advance patterns

Achievements

SCodeScanner received 5 CVEs for finding vulnerabilities in multiple CMS plugins.

  • CVE-2022-1465
  • CVE-2022-1474
  • CVE-2022-1527
  • CVE-2022-1532
  • CVE-2022-1604

How to run?

  • Download the repository -
  • Run pip3 install -r requirements.txt
  • And run python3 scscanner.py --help

Feedback/Imporvements

I would love to hear your feedback on this tool. Open issues if you found any. And open PR request if you have something.

Contact

Utkarsh Agrawal
Website



...



๐Ÿ“Œ Google Debuts OSV-Scanner, a Go Tool For Finding Security Holes in Open Source


๐Ÿ“ˆ 26.75 Punkte

๐Ÿ“Œ XSS-Scanner - XSS Scanner That Detects Cross-Site Scripting Vulnerabilities In Website By Injecting Malicious Scripts


๐Ÿ“ˆ 24.57 Punkte

๐Ÿ“Œ Flawfinder - A Static Analysis Tool For Finding Vulnerabilities In C/C++ Source Code


๐Ÿ“ˆ 24.51 Punkte

๐Ÿ“Œ Workforce DS-30000: Epsons A3-Scanner schafft 70 Scans pro Minute


๐Ÿ“ˆ 24.2 Punkte

๐Ÿ“Œ Acunetix Vulnerability Scanner Now With Network Security Scans


๐Ÿ“ˆ 24.2 Punkte

๐Ÿ“Œ Hacker earns $75k for finding 3 critical vulnerabilities in Apple Safari Browser


๐Ÿ“ˆ 24.02 Punkte

๐Ÿ“Œ OSV-Scanner: A free vulnerability scanner for open-source software


๐Ÿ“ˆ 23.92 Punkte

๐Ÿ“Œ Announcing OSV-Scanner: Vulnerability Scanner for Open Source


๐Ÿ“ˆ 23.92 Punkte

๐Ÿ“Œ Iac-Scan-Runner - Service That Scans Your Infrastructure As Code For Common Vulnerabilities


๐Ÿ“ˆ 21.97 Punkte

๐Ÿ“Œ You Can Run, but You Can't Hide - Finding the Footprints of Hidden Shellcode


๐Ÿ“ˆ 21.76 Punkte

๐Ÿ“Œ Finding Vulnerabilities in Closed Source Windows Software by Applying Fuzzing


๐Ÿ“ˆ 21.72 Punkte

๐Ÿ“Œ Sitadel โ€“ An Open Source Tool for Finding Web Application Vulnerabilities


๐Ÿ“ˆ 21.72 Punkte

๐Ÿ“Œ Google Releases Open Source Tool for Finding File Access Vulnerabilities


๐Ÿ“ˆ 21.72 Punkte

๐Ÿ“Œ Critical RCE Vulnerability in Googleโ€™s VirusTotal Platform Let Attackers Scans Capabilities


๐Ÿ“ˆ 20.83 Punkte

๐Ÿ“Œ Galois Open Sources Tools for Finding Vulnerabilities in C, C++ Code


๐Ÿ“ˆ 20.32 Punkte

๐Ÿ“Œ Static code analyzer for C being leveraged for finding vulnerabilities in Binary Ninja


๐Ÿ“ˆ 20.32 Punkte

๐Ÿ“Œ Mark Zuckerberg admits Facebook scans user private messages


๐Ÿ“ˆ 20.14 Punkte

๐Ÿ“Œ Facebook scans system libraries from their Android app userโ€™s phone in the background and uploads them to their server


๐Ÿ“ˆ 20.14 Punkte

๐Ÿ“Œ How customer collaboration during a pentest can lead to finding a Remote Code Execution (RCE)


๐Ÿ“ˆ 20.01 Punkte

๐Ÿ“Œ How customer collaboration during a pentest can lead to finding a Remote Code Execution (RCE)


๐Ÿ“ˆ 20.01 Punkte

๐Ÿ“Œ yaml-cpp up to 0.5.3 scanner.cpp Scanner::peek denial of service


๐Ÿ“ˆ 19.73 Punkte

๐Ÿ“Œ Advanced IP Scanner โ€“ Fast Lightweight Free Windows Port Scanner


๐Ÿ“ˆ 19.73 Punkte

๐Ÿ“Œ Advanced IP Scanner โ€“ Fast Lightweight Free Windows Port Scanner


๐Ÿ“ˆ 19.73 Punkte

๐Ÿ“Œ Barcode Scanner Banned By Google: 6 Best Scanner Apps To Use In 2021


๐Ÿ“ˆ 19.73 Punkte

๐Ÿ“Œ Minimalistic OffSec Scanner โ€“ A Powerful TCP and UDP Scanner


๐Ÿ“ˆ 19.73 Punkte

๐Ÿ“Œ Angry IP Scanner โ€“ Fast Network Scanner


๐Ÿ“ˆ 19.73 Punkte

๐Ÿ“Œ yaml-cpp bis 0.5.3 scanner.cpp Scanner::peek Denial of Service


๐Ÿ“ˆ 19.73 Punkte

๐Ÿ“Œ Vulners Scanner - Vulnerability Scanner Based On Vulners.Com Audit API


๐Ÿ“ˆ 19.73 Punkte

๐Ÿ“Œ TLS-Scanner - The TLS-Scanner Module From TLS-Attacker


๐Ÿ“ˆ 19.73 Punkte

๐Ÿ“Œ OCR Scanner โ€“ QuickScan 5 erschienen: Kostenlose Scanner-App mit OCR fรผr iOS


๐Ÿ“ˆ 19.73 Punkte

๐Ÿ“Œ OCR Scanner โ€“ QuickScan 6 erschienen: Neue Funktionen fรผr die Scanner-App


๐Ÿ“ˆ 19.73 Punkte











matomo