OWASP / sonarqube
OWASP SonarQube Project
☆110Updated 5 years ago
Alternatives and similar repositories for sonarqube:
Users that are interested in sonarqube are comparing it to the libraries listed below
- The OWASP ZAP Jenkins Plugin extends the functionality of the ZAP security tool into a CI Environment.☆58Updated 3 months ago
- Integrates OWASP Zed Attack Proxy reports into SonarQube☆69Updated last year
- OWASP Testing Guide☆110Updated 8 years ago
- Mobile Security testing Framework☆40Updated 6 years ago
- Node application to help managing Maturity Models like the ones created by BSIMM and OpenSAMM☆189Updated 6 years ago
- Content for 'JIRA Risk Project' book published at LeanPub☆57Updated 6 years ago
- AppSecPipeline Specification for DevOps automation.☆38Updated 2 years ago
- Jenkins plugin for OWASP Dependency-Check. Inspects project components for known vulnerabilities (e.g. CVEs).☆133Updated last week
- SonarQube plugin for identifying hardcoded secrets, such as passwords, API keys, AWS credentials, etc..☆100Updated last year
- ☆103Updated 2 months ago
- Code Pulse is a real-time code coverage tool for penetration testing activities☆118Updated 2 years ago
- Zap baseline scanner in Docker with authentication☆104Updated 8 months ago
- ☆20Updated 6 years ago
- OWASP Security Logging library for Java☆115Updated last year
- Open Security Summit 2019☆25Updated 4 years ago
- ThreadFix is a software vulnerability management platform. This GitHub site is far out of date. Please go to www.threadfix.it for up-to-d…☆339Updated 2 years ago
- Jenkins Plugin from Contrast Security☆13Updated 5 months ago
- SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)☆110Updated last year
- A Java library for parsing and programmatically using threat models☆79Updated last year
- Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulne…☆31Updated 2 years ago
- Prevents you from committing secrets and credentials into git repositories☆21Updated 7 years ago
- OWASP Threat Dragon core files☆11Updated 5 months ago
- This plugin adds an ability to perform automatic code scan by Checkmarx server and shows results summary and trend in Jenkins interface.☆42Updated 3 months ago
- An application to catch, search and analyze HTTP secure headers.☆64Updated 3 years ago
- Open Threat Modeling Template☆49Updated 6 months ago
- Integrates Xanitizer results into SonarQube☆21Updated 3 years ago
- OWASP Cloud Security - Enabling conversations through threat and control stories☆178Updated 6 years ago
- Container Security Verification Standard☆57Updated 5 years ago
- Identify vulnerable libraries in Maven dependencies☆46Updated 2 years ago
- Microsoft Threat Modeling Template files☆182Updated 2 years ago