CodeSheriff.NET: Security Scanning for ASP.NET Core

 CodeSheriff.NET is a security scanning tool designed for ASP.NET Core websites. Unlike traditional scanners, it leverages the .NET Compiler Platform (Roslyn) to perform in-depth code analysis, aiming to reduce false positives and identify more vulnerabilities. Users can operate CodeSheriff through the CodeSheriff.LocalUI for selecting solutions to scan and specifying output locations. For testing purposes, a companion website with known vulnerabilities is available.

https://github.com/ScottNorberg-NCG/CodeSheriff.NET

Comments

Popular posts from this blog

Secure Vibe Coding Guide: Best Practices for Writing Secure Code

OWASP SAMM Skills Framework Enhances Software Security Roles

Opengrep: Open-Source SAST for Code Security and Innovation