LLNL / Surfactant
Modular framework for file information extraction and dependency analysis to generate accurate SBOMs
☆25Updated this week
Alternatives and similar repositories for Surfactant:
Users that are interested in Surfactant are comparing it to the libraries listed below
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆27Updated 10 months ago
- Automated vulnerability discovery and annotation☆64Updated 5 months ago
- ☆23Updated last week
- Firepit - STIX Columnar Storage☆16Updated 7 months ago
- DefectDojo Community Content☆17Updated 3 months ago
- Salesforce Policy Deviation Checker☆30Updated 4 years ago
- CSIRT Tooling: Best Practices in Developing, Maintaining and Distributing Open Source Tools☆16Updated 2 years ago
- ☆10Updated 2 years ago
- Atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.☆60Updated this week
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆128Updated last year
- Python CLI and module for CIRCL hash lookup☆12Updated 2 weeks ago
- A MAL language that demonstrates the Maven project structure☆23Updated 2 years ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆59Updated 6 months ago
- Posture Attribute Collection and Evaluation☆24Updated last year
- A security-first linter for code that shouldn't need linting☆16Updated last year
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different so…☆49Updated this week
- VINCE is the Vulnerability Information and Coordination Environment developed and used by the CERT Coordination Center to improve coordin…☆59Updated last month
- A meta-database collecting resources that compile lists of breaches☆18Updated 2 months ago
- ☆21Updated 3 years ago
- Microsoft Defender for Cloud threat matrix for Kubernetes☆22Updated last year
- Exploit Prediction Scoring System (EPSS)☆24Updated 2 years ago
- Sharing software supply chain security open source projects☆42Updated 2 years ago
- ☆35Updated this week
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆37Updated last month
- CloudPathSniffer is an open-source, easy to use and extensible Cloud Anomaly Detection platform designed to help security teams to find h…☆13Updated last year
- A packet capture visualizer for industrial control networks.☆51Updated last year
- Security-focused Chaos Experiments for DevSecOps Teams☆24Updated 2 weeks ago
- Tool for obfuscating and deobfuscating data.☆67Updated 9 months ago
- Autoconfigured ELK Stack That Contains All EPSS and NVD CVE Data☆48Updated 6 months ago
- Automation tool for Windows Deception Host Burn-In☆80Updated last month