OWASP / PSCFLinks
β28Updated last year
Alternatives and similar repositories for PSCF
Users that are interested in PSCF are comparing it to the libraries listed below
Sorting:
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.β108Updated last year
- ποΈ STRIDE vs. ASVS equivalence tableβ76Updated last year
- Segment's Threat Modeling training for our engineersβ245Updated 4 years ago
- β66Updated last month
- β124Updated last year
- β88Updated 4 years ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.β176Updated 9 months ago
- AI featured threat modeling and security review actionβ45Updated 9 months ago
- This is a companion to the Security Engineer Questionsβ204Updated last year
- β19Updated 3 years ago
- Threat Modeling Manifestoβ29Updated last year
- Threat model for Amazon S3 - Library of all the attack scenarios on Amazon S3, and how to mitigate them following a risk-based approachβ157Updated last year
- A small set of scripts to summarize AWS Security Groups, and generate visualizations of the rules.β63Updated 5 years ago
- Enriching the NVD CVSS scores to include Temporal & Threat Metricsβ209Updated this week
- A Continuous Threat Modeling methodologyβ324Updated 3 years ago
- Convert cloudtrail data to MITRE ATT&CK Sightingsβ80Updated 3 years ago
- β34Updated 4 years ago
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.β103Updated last year
- Docs: Vulnerability management aggregation of AppSec & OpSec (Tools Listing)β31Updated 2 years ago
- Presentations, training modules, and other education materials from Duo Security's Application Security team.β76Updated 4 years ago
- An extensive list of resources related to threat modelling. Gotta catch βem all!β39Updated 3 weeks ago
- A small tool to help developers understand a huge set of security requirements from appsec teamsβ47Updated 3 years ago
- A comprehensive checklist and guide for organizations looking to implement a robust cybersecurity programβ42Updated 2 months ago
- threatspec - continuous threat modeling, through codeβ366Updated 4 years ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestratβ¦β282Updated last week
- β33Updated 3 years ago
- A Cloud Security Posture Manager or CSPM with a focus on security analysis for the modern cloud stack and a focus on the emerging threat β¦β191Updated last year
- Slack bot which promotes Defense in Depth/Zero Trust security practicesβ24Updated 2 years ago
- Project intended to make Attack Maps part of software development by reducing the time it takes to complete them.β48Updated 8 years ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. β¦β66Updated 2 months ago