Change the repository type filter
All
Repositories list
33 repositories
labyrinth
Publicmetasploit-framework
PublicCERT/CC's fork of Metasploit Framework in which we are tagging commits that include vulnerability IDs. The first commit for an ID we recognize gets the tag for that ID. Aside from adding git tags, we do not otherwise modify the code. Updates hourly.- Vultron is a protocol for Coordinated Vulnerability Disclosure
- Content for the CERT Guide to Coordinated Vulnerability Disclosure
- CERT Kaiju is a binary analysis framework extension for the Ghidra software reverse engineering suite. This repository is the primary, canonical repository for this project -- file bug reports and wishes here!
- Stakeholder-Specific Vulnerability Categorization
VINCE
PublicVINCE is the Vulnerability Information and Coordination Environment developed and used by the CERT Coordination Center to improve coordinated vulnerability disclosure. VINCE is a Python-based web platform.- CERT/CC's fork of the official Exploit Database repository in which we are tagging commits that include vulnerability IDs. The first commit for an ID we recognize gets the tag for that ID. Aside from adding git tags, we do not otherwise modify the code. Updates hourly.
- CERT Tapioca for MITM network analysis
metasploit_json_parser
Public archiveParser for the JSON database included in metasploit-framework that emits a CSV file of modules keyed by vulnerability IDs and references. NOTE: Superseded by git_vul_driller linked below.Vulnerability-Data-Archive-Tools
Public archiveTools for working with the CERT Vulnerability Data Archive. See also https://github.com/CERTCC/Vulnerability-Data-ArchiveVulnerability-Data-Archive
Public archiveWith the hope that someone finds the data useful, we used to periodically publish an archive of almost all of the non-sensitive vulnerability information in our vulnerability reports database. See also https://github.com/CERTCC/Vulnerability-Data-Archive-Toolspharos
Publicvulnerability_disclosure_policy_templates
Public archiveA collection of templates for generating vulnerability disclosure policies. (NOTE: As of 2024, these templates are now part of the CERT Guide to Coordinated Vulnerability Disclosure, see link in README.).github
Publiccertfuzz
Public archiveSBOM
PublicExamples and proof-of-concept for Software Bill of Materials (SBOM) code & datacveClient
Publickeyfinder
Public archiveCVE-2021-44228_scanner
Public archivegit_vul_driller
PublicLinux-Kernel-Analysis-Environment
Public archiveSyzbot-Repro-Runner
Public archiveUEFI-Analysis-Resources
Public archiveautocats
Publicexploitable
Public archiveprivesc
Public archivepharos-demangle
PublicDemangles C++ symbol names genarated by Microsoft Visual C++ in order to retrieve the original C++ declarations. This is a "mirror"; please file tickets, bug reports, or pull requests at the upstream home in @cmu-sei: https://github.com/cmu-sei/pharos-demangletrommel
Public archive