Code Monkey home page Code Monkey logo

cvebase.com's Introduction

cvebase

This is the official data repository for cvebase. Updates to this repo are immediately synced with the cvebase.com web app. Pull requests for improving the content are open to all.

Follow us on twitter @cvebase to stay up-to-date on project updates.

About cvebase

cvebase is a community-driven vulnerability platform for security researchers, pentesters, and bug bounty hunters:

About this repository

This repository contains the Markdown files for the two main components of cvebase.com:

  • cve: CVE files are located in the /cve/ directory, organized by year and sequence identifier following the naming scheme set by CVEProject/cvelist.
  • researcher: Researcher profiles are in the /researcher/ directory, named by researcher slug.

Inspired by static site generator gohugoio/hugo, the Markdown files have YAML "front matter" to define metadata for both CVEs and Researchers.

Reference these examples of CVE & Researcher files:

How to add a Security Researcher profile

  • Fork this repo git clone https://github.com/cvebase/cvebase.com.git
  • Create a markdown (.md) file in the /researcher directory. Name the file using researcher's handle if available (e.g. rgod.md), and if not use a slugged version of their full name (e.g. qixun-zhao.md).
  • Fill in the contents of the file -> front matter + bio:
  • For the front matter containing Security Researcher metadata, which is in YAML format:
    • Section is identified by opening and closing three dashes (---)
    • Minimum required YAML field values are name, alias, and a list of cves
    • Optional YAML field values are nationality, website, twitter, github, linkedin, hackerone, bugcrowd
  • Git commit & submit pull request on GitHub

Project Roadmap

View our roadmap and share your ideas:

  • Browse this project's issues to review existing suggestions and ideas.
  • If you're interested an issue, give it a ๐Ÿ‘ which will help us prioritize. We'll update progress on the issue and mention you when the feature is ready.
  • If you don't see your idea, create a new issue.
  • Labels show progress on issues:

Contributing

  • Fork this repository and send a pull request
  • Create an issue in this repository

Sponsored Research

We are committed to working with, supporting, and contributing to new and existing open source projects that provide value to the security research community.

  • Vulhub - Vulnerable environments made easy through docker-compose
  • Jaeles - Quickly scan vulnerable targets with a powerful collection of detection signatures
  • ffuf - A fast web fuzzer for content discovery
  • tomnomnom - Creator of httprobe, assetfinder, gf, and numerous other command-line security tools built in Go
  • OWASP/Amass - In-depth DNS enumeration, attack surface mapping and external asset discovery
  • Axiom - A dynamic infrastructure framework to build and deploy cloud infrastructure for offensive security

License

Repository content licensed CC BY-NC-SA 4.0.

cvebase.com's People

Contributors

ajdumanhug avatar cve-ai avatar daehee avatar g147 avatar impramodsargar avatar jchambers-bishopfox avatar kathanp19 avatar kernel-sanders avatar narcolepticchicken avatar phith0n avatar thiennv57 avatar tin-z avatar

Watchers

 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.