OWASP / OdTMLinks
OWASP Ontology-driven Threat Modelling framework
☆37Updated 2 years ago
Alternatives and similar repositories for OdTM
Users that are interested in OdTM are comparing it to the libraries listed below
Sorting:
- Development of the NIST vulnerability data ontology (Vulntology).☆39Updated 3 weeks ago
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different so…☆51Updated this week
- This repository holds the necessary content to produce the D3FEND ontology distribution.☆83Updated this week
- Computer Aided Integration of Requirements and Information Security - Server☆164Updated 10 months ago
- Security Control Knowledge Graph☆29Updated last year
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆65Updated 2 weeks ago
- Mappings Explorer enables cyber defenders to understand how security controls and capabilities map onto the adversary behaviors catalogue…☆67Updated this week
- Stakeholder-Specific Vulnerability Categorization☆153Updated this week
- Structured Threat Intelligence Graph☆95Updated 3 months ago
- Explore AI Supply Chain Risk with the AI Risk Database☆58Updated last year
- A MAL language that demonstrates the Maven project structure☆23Updated 3 years ago
- ATLAS tactics, techniques, and case studies data☆76Updated 2 months ago
- Global Security Database Tools☆43Updated last year
- OWASP Foundation Web Respository☆31Updated 2 years ago
- Public static website for the D3FEND project. For the D3FEND ontology repo see: https://github.com/d3fend/d3fend-ontology☆83Updated 2 months ago
- ☆116Updated this week
- VINCE is the Vulnerability Information and Coordination Environment developed and used by the CERT Coordination Center to improve coordin…☆71Updated 3 weeks ago
- A Crowdsourcing Exchange for mapping various sources of security vulnerabilities, exposures, threats, and controls data☆26Updated 6 years ago
- Project intended to make Attack Maps part of software development by reducing the time it takes to complete them.☆48Updated 8 years ago
- Scripts to import OSCAL example content into the Neo4J graph database☆28Updated 2 years ago
- Software Component Verification Standard (SCVS)☆148Updated 3 months ago
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆61Updated last year
- OASIS Cyber Threat Intelligence (CTI) TC: A tool for generating STIX content for prototyping and testing. https://github.com/oasis-open/c…☆41Updated last year
- A community collection of security reviews of open source software components.☆95Updated last year
- Official repository for the Open Vulnerability and Assessment Language☆63Updated last month
- OWASP Threat Dragon core files☆28Updated 4 years ago
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆96Updated 5 months ago
- Core model including reused documentation☆98Updated last month
- Posture Attribute Collection and Evaluation☆23Updated 2 years ago
- a curated list of useful threat modeling resources☆137Updated last year