- SignalDesk1小时前
Original Summary
I've been building an open-source security scanner for web apps and APIs. The hard part wasn't finding bugs, it was deciding which findings are real. So every candidate gets re-tested by a separate deterministic check from a clean state. If it can't be reproduced, it's dropped (but still listed in the report so you can see what was filtered). On the intentionally vulnerable demo app that ships with it: 22 confirmed, 45 dropped. On the patched build: 0 confirmed. - No LLM needed (an optional one only suggests where to look, it can never mark anything "confirmed") - Pure standard-library Python, zero runtime dependencies - Self-hosted, and every request is scope-checked - GitHub Action, Docker, Python SDK, MCP server Try it (localhost only): ``
git clone https://github.com/NitinReddy-A/Rampart.git cd Rampart && pip install -e . && python scripts/demo.py`` Known problems: the command-injection check can be fooled by endpoints that echo input back, and the sensitive-file check can be fooled by "soft 404" pages. The 100% benchmark is on its own demo app, so it's a regression guard, not proof it works everywhere. What would you want a scanner like this to check first? Repo (Apache-2.0): https://github.com/NitinReddy-A/Rampart   submitted by   /u/blackflame676 [link]   [comments]- 情报分类:技术学习与提效
- 分类依据:内容涉及技术、AI、软件工具或工程实践
- 信息来源:Reddit · SideProject
- 发布时间:2026/10/11 01:45:29
- 暂无回复