Founder and project lead for dependency-check.
- Oak Hill, VA
- https://infosec.exchange/@ctxt
- @ctxt
Highlights
- Pro
Pinned Loading
- dependency-check/DependencyCheck
dependency-check/DependencyCheck PublicOWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.
- dependency-check/dependency-check-gradle
dependency-check/dependency-check-gradle PublicThe dependency-check gradle plugin is a Software Composition Analysis (SCA) tool that allows projects to monitor dependent libraries for known, published vulnerabilities.
- open-vulnerability-clients
open-vulnerability-clients PublicJava library for working with available vulnerability data sources (GitHub Security Advisories, NVD, EPSS, CISA Known Exploited Vulnerabilities, etc.)
- open-vulnerability-cli
open-vulnerability-cli PublicA cli that can be used to query various online vulnerability sources such as the NVD or GHSA. The CLI and docker images can be used to mirror the NVD.
- malicious-dependencies
malicious-dependencies PublicDemonstrates how a malicious dependency could negatively impact the build output.
Something went wrong, please refresh the page to try again.
If the problem persists, check the GitHub status page or contact support.
If the problem persists, check the GitHub status page or contact support.






