Secure SDLC learning project with GitHub Actions, Semgrep, Trivy, Gitleaks, OWASP ZAP, Docker, Kubernetes, and secure authentication
☆21Jul 21, 2026Updated last month
Alternatives and similar repositories for SecureSDLC-Lab
Users that are interested in SecureSDLC-Lab are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- VulnReach builds on standard SCA output by adding reachability context - proving through static analysis, taint tracking, and live runtim…☆23Aug 11, 2026Updated 2 weeks ago
- "Terrible Thick Client" is a vulnerable application developed in C# .NET framework.☆20Jul 9, 2023Updated 3 years ago
- Set of scripts that will be useful for bug hunters☆17Apr 18, 2026Updated 4 months ago
- A collection of Script for Red Team & Incidence Response☆11Jun 30, 2022Updated 4 years ago
- CLI tool for Continuous Threat Modeling☆37Mar 13, 2026Updated 5 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- All the code snippets from my Secure Code Review series on youtube (youtube.com/@muqsitbaig)!☆25Jul 28, 2024Updated 2 years ago
- Url scrapper or extractor from alienvault☆39Mar 1, 2025Updated last year
- Burp Suite extension + port-based highlighter: dedupes HTTP history into a live unique-request feed and color-codes attacker/victim traff…☆13Aug 14, 2026Updated 2 weeks ago
- An agent that can help triage vulnerabilities across multiple codebases☆19Mar 14, 2026Updated 5 months ago
- "Agri-Assist Project: MERN stack and Flask-powered agricultural app. Modules include plant disease prediction, crop selection, and e-comm…☆14Jan 26, 2024Updated 2 years ago
- ☆15Jul 30, 2024Updated 2 years ago
- ☆15Nov 13, 2025Updated 9 months ago
- Small Script that permits to enumerate folders in Windows Defender Exclusion List with no Administrative privileges☆27Nov 20, 2024Updated last year
- These are tools I cheated with the help of ChatGPT to help me with Penetration Testing and Red Teaming☆14Jul 30, 2026Updated last month
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Focus SAST scans (with CodeQL) on just the changed parts of your monorepo, split up as you define☆16Jul 17, 2026Updated last month
- Zero-touch pipeline that turns newly weaponized CVEs from the CISA Known Exploited Vulnerabilities (KEV) catalog into production-ready Si…☆40Aug 19, 2026Updated last week
- FWRF is a open source tool for firmware web-side analysis.☆11Aug 27, 2015Updated 11 years ago
- This repository is intended as a comprehensive guide to prepare for interviews focused on generative AI. It serves as a one-stop resource…☆11Dec 13, 2024Updated last year
- Training materials☆27May 14, 2026Updated 3 months ago
- Search for github leaks by combining gitleaks and git-hound capabilities with rate control and exhaustive search.☆24Jun 20, 2026Updated 2 months ago
- ☆25Jul 13, 2026Updated last month
- SelfHosted - Bug Bounty Programs | Discover new and fresh bug bounty programs across platforms. Updated frequently to always display the …☆16Nov 24, 2025Updated 9 months ago
- C programs for sockets, reverse shell, shellcode execution, and process injection.☆24Dec 10, 2025Updated 8 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Fuzzing tool written in Golang. Insane monkey not included.☆11Feb 22, 2018Updated 8 years ago
- A Python-Based Tool for Reconnaissance and State Management of AD Principals☆27Apr 8, 2026Updated 4 months ago
- Repositorio de inteligencia de amenazas que contiene direcciones IP maliciosas asociadas al foro de ciberdelincuencia DarkForums.☆27Jun 2, 2026Updated 2 months ago
- ☆20Apr 28, 2025Updated last year
- A sub-domain reconnaissance written in golang☆12Jan 11, 2018Updated 8 years ago
- ThreatCheck - Select any indicator of compromise on any web page - or highlight an entire paragraph from a threat report - and instantly …☆34May 6, 2026Updated 3 months ago
- Simulates a compromise in a cloud and container environment☆35Dec 18, 2024Updated last year
- Keycloak SCIM2 Outbound User Provisioning☆26Sep 29, 2024Updated last year
- A collection of PowerShell scripts for analyzing macOS Forensic Artifacts☆34Mar 16, 2026Updated 5 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- A Productivity-Boosting Burp Suite extension written in Kotlin that enables persistent sticky session handling in web application testing…☆15Oct 8, 2025Updated 10 months ago
- A code mapping and visualization tool☆21Sep 9, 2025Updated 11 months ago
- Helping defenders learn and validate npm supply-chain detections with safe atomic tests.☆35Oct 30, 2025Updated 10 months ago
- A collection of content, tips and considerations from the AppSec community to spread the word of DevSecOps and guide aspirants who don't …☆27Dec 9, 2024Updated last year
- Automatically attack all file shares within AD network environment. Exploiting weak permissions.☆17Aug 2, 2019Updated 7 years ago
- ☆29Aug 22, 2026Updated last week
- Web Crawling and RAG Capabilities for AI Agents and AI Coding Assistants☆16Jun 9, 2025Updated last year