1 comment

[ 1.1 ms ] story [ 16.1 ms ] thread
I spent years doing software development and pentesting and kept noticing the same gap: static scanners find obvious issues but miss the interesting stuff, chained vulnerabilities, logic flaws, auth bypasses that only show up when you reason about the full codebase.

So I built Kalibur. You link your GitHub repo, it analyzes your code the way an attacker would, maps attack paths, chains vulnerabilities across files, and generates a full report with a fix prompt for every finding. Full PDF report can also be downloaded in one click. No requests to your live environment, whitebox only.

It runs in about 10 minutes and the cost scales with the codebase size, starting from $25.

In beta now => https://kalibur.ai