DefectDojo / Community-Contribs
DefectDojo Community Content
☆17Updated 6 months ago
Alternatives and similar repositories for Community-Contribs:
Users that are interested in Community-Contribs are comparing it to the libraries listed below
- Maturity Model Collaborative project☆14Updated 2 years ago
- GitHub action to run Threagile, the agile threat modeling toolkit, on a repo's threagile.yaml file☆13Updated 11 months ago
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different so…☆50Updated this week
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆62Updated 9 months ago
- A project to visualize the software supply chain☆45Updated last year
- OWASP Foundation Web Respository☆30Updated 2 years ago
- Automate vulnerability triage which prioritizes remediation over discovery☆16Updated this week
- CVSS v4.0 calculator☆29Updated 7 months ago
- Defending IaaS with ATT&CK is a project to create a collection of ATT&CK techniques relevant to a Linux IaaS environment, as well as a me…☆14Updated last year
- CI Pipeline with Pixi, the WAF OWASP Core Rule Set and TestCafe tests.☆15Updated 3 years ago
- ☆10Updated 2 years ago
- OWASP Foundation Web Respository☆28Updated 7 months ago
- Dragon-GPT uses Chat-GPT, or local LLM, to execute automatic and AI-powered threat modeling analysis on a given OWASP Threat Dragon diagr…☆35Updated last month
- Sharing software supply chain security open source projects☆48Updated 2 years ago
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆39Updated 4 months ago
- Autoconfigured ELK Stack That Contains All EPSS and NVD CVE Data☆49Updated 9 months ago
- Build a CVE library with aggregated CISA, EPSS and CVSS data☆27Updated last year
- OWASP Threat Dragon with Gitlab Integration☆25Updated 7 years ago
- A fun POC that is built to understand AI security agents.☆29Updated 3 months ago
- The Secure Coding Framework☆21Updated 4 years ago
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated 2 years ago
- A collection of dashboards, templates, API's and Power BI code for vulnerability management and analysis☆16Updated 2 months ago
- InfoSec OpenAI Examples☆19Updated last year
- A Burp plugin to export findings to DefectDojo☆30Updated last year
- Contextal Platform, a powerful, open-source cybersecurity solution designed for contextual threat detection and intelligence.☆27Updated 3 weeks ago
- A meta-database collecting resources that compile lists of breaches☆18Updated 5 months ago
- Repo to hold the markdown-ified metadata on AppSec tools that are automation-friendly☆12Updated 8 years ago
- HashiCorp-relevant rules for the Semgrep code analysis tool☆39Updated last year
- EPSS(Exploit Prediction Scoring System) API client☆18Updated this week
- ☆16Updated 8 months ago