GeekMasher / ghastoolkitLinks
GitHub Advanced Security Python Toolkit
☆14Updated last week
Alternatives and similar repositories for ghastoolkit
Users that are interested in ghastoolkit are comparing it to the libraries listed below
Sorting:
- Action to detect if a secret is initially detected in a pull request☆18Updated last month
- Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations☆27Updated last year
- ☆76Updated last month
- [Deprecated] GitHub's Field Team's CodeQL Custom Queries, Suites, and Configurations. See GitHubSecurityLab/CodeQL-Community-Packs instea…☆85Updated last year
- Examples of Custom Secret Scanning Patterns☆168Updated 2 weeks ago
- GitHub Action to generate GitHub Advanced Security (GHAS) metrics report☆18Updated 10 months ago
- GH CLI CodeQL Scan Extension☆20Updated 3 months ago
- Optimize the utilization of GHAS licenses in an enterprise (or organization)☆15Updated last month
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆121Updated 2 years ago
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 3 years ago
- GitHub Advanced Security Pull Request Security Team required review GitHub App☆36Updated 2 weeks ago
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆156Updated last year
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆155Updated last year
- Original workshops and staging area for new ones☆16Updated 5 months ago
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆57Updated last week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated 4 months ago
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆60Updated 7 months ago
- A tool that aims to bulk automates the enablement of GitHub Code Scanning, Secret Scanning and Dependabot across multiple repositories.☆158Updated last year
- Put the power of CodeQL in your pocket, take it with you to any CI 🚀☆12Updated 2 years ago
- A curated list of awesome CodeQL resources.☆57Updated 3 months ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 5 years ago
- GitHub Advance Security Compliance Action☆134Updated 2 years ago
- SARIF Microsoft Visual Studio Code extension☆123Updated last week
- Integrate CodeQL into CI/CD pipelines, using the CodeQL CLI Bundle for Automated Code Scanning☆23Updated 4 months ago
- A React-based component for viewing SARIF files.☆99Updated last year
- Manager of third-party sources of Semgrep rules 🗂☆90Updated last year
- GitHub Advanced Security Policy as Code☆91Updated this week
- This repository contains pipeline files for various CI/CD systems, illustrating how to integrate the CodeQL CLI Bundle for Automated Code…☆27Updated 2 years ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆106Updated 10 months ago
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆96Updated 9 months ago