Skip to content
@CERTCC

CERT Coordination Center (CERT/CC)

The CERT Coordination Center is part of Carnegie Mellon University's Software Engineering Institute.

Pinned Loading

  1. SSVC SSVC Public

    Stakeholder-Specific Vulnerability Categorization

    Python 164 41

  2. VINCE VINCE Public

    VINCE is the Vulnerability Information and Coordination Environment developed and used by the CERT Coordination Center to improve coordinated vulnerability disclosure. VINCE is a Python-based web p…

    Python 80 28

  3. kaiju kaiju Public

    Forked from cmu-sei/kaiju

    CERT Kaiju is a binary analysis framework extension for the Ghidra software reverse engineering suite. This repository is the primary, canonical repository for this project -- file bug reports and …

    Java 300 25

  4. pharos pharos Public

    Forked from cmu-sei/pharos

    Automated static analysis tools for binary programs. This is a "mirror"; please file tickets, bug reports, or pull requests at the upstream home in @cmu-sei: https://github.com/cmu-sei/pharos

    C++ 7 3

  5. cveClient cveClient Public

    A client and library to cve-services 2.x to provide CVE management for CNA and CERTs

    JavaScript 27 9

  6. SBOM SBOM Public

    Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data

    JavaScript 65 20

Repositories

Showing 10 of 34 repositories
  • metasploit-framework Public Forked from rapid7/metasploit-framework

    CERT/CC's fork of Metasploit Framework in which we are tagging commits that include vulnerability IDs. The first commit for an ID we recognize gets the tag for that ID. Aside from adding git tags, we do not otherwise modify the code. Updates hourly.

    CERTCC/metasploit-framework’s past year of commit activity
    Ruby 3 14,983 0 0 Updated Oct 3, 2025
  • VINCE Public

    VINCE is the Vulnerability Information and Coordination Environment developed and used by the CERT Coordination Center to improve coordinated vulnerability disclosure. VINCE is a Python-based web platform.

    CERTCC/VINCE’s past year of commit activity
    Python 80 28 25 4 Updated Oct 1, 2025
  • CERT-Guide-to-CVD Public

    Content for the CERT Guide to Coordinated Vulnerability Disclosure

    CERTCC/CERT-Guide-to-CVD’s past year of commit activity
    HTML 11 10 15 5 Updated Oct 1, 2025
  • SSVC Public

    Stakeholder-Specific Vulnerability Categorization

    CERTCC/SSVC’s past year of commit activity
    Python 164 41 102 (3 issues need help) 4 Updated Oct 1, 2025
  • Vultron Public

    Vultron is a protocol for Coordinated Vulnerability Disclosure

    CERTCC/Vultron’s past year of commit activity
    Python 14 4 10 1 Updated Sep 26, 2025
  • exploitdb Public Forked from offensive-security/exploitdb

    CERT/CC's fork of the official Exploit Database repository in which we are tagging commits that include vulnerability IDs. The first commit for an ID we recognize gets the tag for that ID. Aside from adding git tags, we do not otherwise modify the code. Updates hourly.

    CERTCC/exploitdb’s past year of commit activity
    C 11 GPL-2.0 1,955 0 0 Updated Sep 18, 2025
  • kaiju Public Forked from cmu-sei/kaiju

    CERT Kaiju is a binary analysis framework extension for the Ghidra software reverse engineering suite. This repository is the primary, canonical repository for this project -- file bug reports and wishes here!

    CERTCC/kaiju’s past year of commit activity
    Java 300 38 7 0 Updated Aug 28, 2025
  • pharos Public Forked from cmu-sei/pharos

    Automated static analysis tools for binary programs. This is a "mirror"; please file tickets, bug reports, or pull requests at the upstream home in @cmu-sei: https://github.com/cmu-sei/pharos

    CERTCC/pharos’s past year of commit activity
    C++ 7 212 0 1 Updated Aug 12, 2025
  • certfuzz Public archive

    This project contains the source code for the CERT Basic Fuzzing Framework (BFF) and the CERT Failure Observation Engine (FOE).

    CERTCC/certfuzz’s past year of commit activity
    Python 271 55 0 0 Updated Jul 30, 2025
  • cveClient Public

    A client and library to cve-services 2.x to provide CVE management for CNA and CERTs

    CERTCC/cveClient’s past year of commit activity
    JavaScript 27 9 0 1 Updated Jul 30, 2025

People

This organization has no public members. You must be a member to see who’s a part of this organization.