Dependency Combobulator
-
Updated
Jan 10, 2024 - Python
Dependency Combobulator
Dependency Confusion Security Testing Tool
DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.
tool for checking potential dependency confusion
A tool to investigate Dependency Confusion in Artifactory
Detect potential typosquatting packages across package ecosystems
## Auto-archived due to inactivity. ## Yorkshire is your friend, yorkshire checks Python's requirements files for a possible dependency confusion.
Python-based tool for identifying potential dependency confusion vulnerabilities in JavaScript (`package.json`) and Python (`requirements.txt`) projects
oh supply chain my supply chain — a multi-ecosystem package malware scanner for PyPI, npm, crates.io, and Go. Static analysis plus a sandbox detonation engine, with pluggable detection content (open-core; AGPL engine, Apache-2.0 signatures).
npm PoC packages
Chrome extension to detect dependency confusion vulnerabilities in GitHub repositories (NPM, PyPI, Ruby)
High-performance Go tool for detecting Dependency Confusion vulnerabilities by scanning JavaScript files and checking unclaimed packages on npm registry.
Demonstration of Dependency Confusion applied to .NET and NuGet
Simple bash dependency confusion checker (npm, python and ruby)
Project to handle requests from malicious PoC of Dependency Confusion or Similar Name packages. Also can be used to generate those packages (gem, npm, pip).
DependencyConfusion is tool used for finding any library used by the project that might be vulnerable to dependency confusion attack.
Audit the npm packages a pull request adds or bumps, before they execute, to catch typosquat, dependency-confusion, and malicious install-hook packages that CVE scanners are structurally blind to.
Won 🏆 Best Technical Depth Award @ LikeLion Hackathon 2026. Agentic install-time supply-chain security for npm and PyPI. Multi-agent verdicts, local registry proxy, honest Wilson-CI benchmarks.
automatic tool for finding dependency confusion vulnerabilities
Add a description, image, and links to the dependency-confusion topic page so that developers can more easily learn about it.
To associate your repository with the dependency-confusion topic, visit your repo's landing page and select "manage topics."