ForAllSecure / mapi-action
π€ Run a Mayhem for API scan in GitHub Actions
β23Updated this week
Related projects β
Alternatives and complementary repositories for mapi-action
- β13Updated last month
- Mayhem example templates for programming languages and fuzzers that you love!β27Updated 10 months ago
- Precaution CLI - command line static application security testing toolβ23Updated this week
- A place to systematically store software bill of materials (SBOM) documents.β44Updated last year
- Python classes for the SARIF object modelβ41Updated 7 months ago
- A Python library and command line interface for CVE Services.β58Updated 3 weeks ago
- This project is deprecated. Use https://github.com/returntocorp/semgrep insteadβ73Updated 7 months ago
- SARIF Microsoft Visual Studio Code extensionβ111Updated last month
- β23Updated 3 months ago
- A community collection of security reviews of open source software components.β92Updated 8 months ago
- An auto-scoring capture-the-flag game focusing on TOCTOU vulnerabilitiesβ18Updated 4 years ago
- OWASP Foundation Web Respositoryβ27Updated 3 months ago
- github action to run the bandit security linterβ15Updated 2 months ago
- Golang tool to pull and summarize NPM license infoβ12Updated last year
- Securing open-source package ecosystems by originating, validating, and augmenting build attestations.β32Updated this week
- Sample CICD Pipelines for OneFuzzβ27Updated last year
- Semgrep extension for Visual Studio Codeβ54Updated this week
- Compare vulnerability scanners results (to make them better!)β15Updated last week
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and oβ¦β71Updated 3 weeks ago
- Simple fuzzer for OpenAPI 3 specification based APIsβ21Updated last year
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and discβ¦β126Updated last year
- The model for the information captured in SPDX version 3 standard.β71Updated this week
- β29Updated 3 years ago
- β10Updated 10 months ago
- Securing Alice's, Bob's and Carl's software supply chain using in-totoβ89Updated last month
- Automated dynamic security analysis by emulation of IoT firmware images in CI-pipelines.β11Updated 3 years ago
- Security scanning & static analysis toolβ93Updated last month
- The Great Multi-Factor Authentication (MFA) Distribution Project of the Open Source Security Foundation (OpenSSF). We work to distribute β¦β53Updated 2 years ago
- Source code for the Binaries of OWASP WrongSecretsβ10Updated 2 weeks ago
- Low-effort reachability analysis for third-party code vulnerabilities.β20Updated last year