ManicodeSecurity / Defending-DevOpsLinks
Lab Material for the Two-Day Defending Modern DevOps Environments Course
☆125Updated 5 years ago
Alternatives and similar repositories for Defending-DevOps
Users that are interested in Defending-DevOps are comparing it to the libraries listed below
Sorting:
- A very vulnerable serverless application in AWS Lambda☆96Updated 6 years ago
 - OWASP Cloud Security - Enabling conversations through threat and control stories☆182Updated 6 years ago
 - k8s audit repo☆229Updated 6 years ago
 - Security aspects of AWS products for the Security Specialist certification☆212Updated 3 years ago
 - ☆51Updated 5 years ago
 - Security scanning & static analysis tool☆93Updated last year
 - ☆68Updated 3 months ago
 - A step-by-step walkthrough of CloudGoat 2.0 scenarios.☆135Updated 5 years ago
 - AppSecPipeline Specification for DevOps automation.☆40Updated 2 years ago
 - ☆74Updated 5 years ago
 - OWASP Kubernetes Security Testing Guide☆38Updated last week
 - Container Security Verification Standard☆58Updated 6 years ago
 - Kubernetes Easter CTF☆59Updated 5 years ago
 - Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulne…☆31Updated 2 years ago
 - Presentations, training modules, and other education materials from Duo Security's Application Security team.☆77Updated 4 years ago
 - This repo gives an overview of some GCP metadata API attack and defend patterns☆77Updated 5 years ago
 - Pentester-focused Docker registry tool to enumerate and pull images☆112Updated 5 years ago
 - A deliberately vulnerable Kubernetes cluster☆129Updated last year
 - Automated GKE Kubelet Impersonation and Cluster Secret Stealer via kube-env☆103Updated 6 years ago
 - Research on the enumeration of IAM permissions without logging to CloudTrail☆61Updated 4 years ago
 - ☆263Updated last year
 - Attacking and Defending Kubernetes Clusters: A Guided Tour☆209Updated 4 years ago
 - ☆124Updated last year
 - ☆21Updated 7 years ago
 - ☆27Updated last month
 - This is an offensive guide to securing AWS infrastructures. The hope is that by knowing how to take advantage of various types of AWS wea…☆173Updated 6 years ago
 - Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆78Updated 3 years ago
 - OWASP ServerlessGoat: a serverless application demonstrating common serverless security flaws☆327Updated last year
 - The invoicer for Chapter 2 of Securing DevOps☆48Updated last year
 - ☆57Updated 5 years ago