- SignalDesk3小时前
Original Summary
I build this tool called - CheckExploit . A lot of developers face issue with contant pressure to monitor and upgrade their dependencies. The SCA tools says that your packages contain critical vulnearability but it doesn't say anything about the actual exploitability. Even if the packages contain critical severity, does it actually affect your functions, classes or code block. Scanners flag CVEs. CheckExploit proves which ones actually reach your code by running the real exploit against your actual code inside an isolated sandbox. Let me know what you think about this tool and i am open for feedback. This tool is completely OPEN SOURCE. fork it, run it and test your code.   submitted by   /u/No_Skill7452 [link]   [comments]
- 情报分类:技术学习与提效
- 分类依据:内容涉及技术、AI、软件工具或工程实践
- 信息来源:Reddit · SideProject
- 发布时间:2026/10/1 02:23:41
- 暂无回复