DataDog / security-agent-policies
Policies for Security Agent - compliance and runtime checks
☆24Updated 3 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for security-agent-policies
- Trivy's misconfiguration scanning engine☆215Updated 7 months ago
- Security configuration checks for popular cloud native applications and infrastructure.☆118Updated 2 years ago
- Kubernetes audit logging, when you don't control the control plane☆65Updated this week
- An open project to list all publicly known cloud vulnerabilities and CSP security issues☆309Updated this week
- Protect GitHub Actions with Tracee☆79Updated 11 months ago
- IAM-Deescalate helps mitigate privilege escalation risk in AWS identity and access management (IAM)☆96Updated 2 years ago
- Serverless SOAR (Security Orchestration, Automation and Response) framework for automatic inspection and evaluation of security alert☆43Updated last year
- Runtime security plug to protect user containers☆65Updated this week
- A GitHub App that acts like a Security Token Service (STS) for the Github API☆139Updated this week
- Static Analysis Library for Containers☆199Updated last year
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆80Updated 9 months ago
- Documenting your Threat Models with HCL☆401Updated 2 months ago
- Proof-of-concept SLSA provenance generator for GitHub Actions☆99Updated 2 years ago
- Simple SOAR (Security Orchestration, Automation and Response) framework integrated with OPA/Rego☆21Updated last week
- a tool to audit the istio service mesh☆173Updated 3 years ago
- Falco plugins registry☆86Updated this week
- The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.☆121Updated this week
- ☆39Updated this week
- GCP CSPM using Google Sheets☆34Updated 5 months ago
- Convert Falco logs to Docker seccomp profiles☆20Updated 8 years ago
- Automated testing, generation & manipulation of #osquery packs☆70Updated last month
- This repo is a consolidation of Secure Software Supply Chain resources, such as talks, whitepapers, conferences and more.☆137Updated 2 years ago
- CLI to prevent malicious Terraform Providers from being executed. You can define the allow list of Terraform Providers and their versions…☆76Updated this week
- ☆51Updated 8 months ago
- Rego policies for enterprise-scale Compliance-as-Code with OPA Conftest.☆58Updated last year
- Threatest is a CLI and Go framework for end-to-end testing threat detection rules.☆319Updated 11 months ago
- Static analysis for CloudFormation templates to identify common misconfiguration☆58Updated 2 years ago
- Exports primitive and predefined GCP IAM Roles and their permissions☆108Updated this week
- Notice: Postee is no longer under active development or maintenance.☆211Updated last month
- ☆56Updated 2 years ago