Merge pull request #126 from hahwul/add-dependency-confusion-tools

feat: Add ConfusedDotnet, dependency-confusion-scanner, and depenfusion tools
This commit is contained in:
HAHWUL 2024-08-18 19:05:20 +09:00 committed by GitHub
commit 4d79a9d8a4
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
3 changed files with 27 additions and 0 deletions

View File

@ -0,0 +1,9 @@
---
name: ConfusedDotnet
description: Tool to check for dependency confusion vulnerabilities in NuGet package management systems
url: https://github.com/visma-prodsec/ConfusedDotnet
category: tool
type: Scanner
platform: [windows]
lang: C#
tags: [dependency-confusion]

View File

@ -0,0 +1,9 @@
---
name: dependency-confusion-scanner
description: This small repo is meant to scan Github's repositories for potential Dependency confusion vulnerabilities.
url: https://github.com/Yaniv-git/dependency-confusion-scanner
category: tool
type: Scanner
platform: [linux, macos, windows]
lang: Python
tags: [dependency-confusion]

9
weapons/depenfusion.yaml Normal file
View File

@ -0,0 +1,9 @@
---
name: depenfusion
description: A powerful pentesting tool for detecting and exploiting dependency confusion vulnerabilities in Node.js projects
url: https://github.com/benjamin-mauss/depenfusion
category: tool
type: Scanner
platform: [linux, macos, windows]
lang: Python
tags: [dependency-confusion]