OWASP / www-project-appsec-pipeline
OWASP Foundation Web Respository
☆10Updated last year
Alternatives and similar repositories for www-project-appsec-pipeline:
Users that are interested in www-project-appsec-pipeline are comparing it to the libraries listed below
- OWASP Foundation Web Respository☆27Updated 5 months ago
- ZAP Management Scripts☆21Updated this week
- ☆14Updated 6 months ago
- GitHub action to run Threagile, the agile threat modeling toolkit, on a repo's threagile.yaml file☆13Updated 9 months ago
- Threat Modeling Manifesto☆27Updated 6 months ago
- The Secure Coding Framework☆21Updated 4 years ago
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different so…☆49Updated this week
- ☆32Updated 2 years ago
- Automated process to build and distribute Posture & Exposure Reports' bi-weekly to customers.☆17Updated last year
- DefectDojo Community Content☆17Updated 4 months ago
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated last year
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆61Updated 7 months ago
- ☆10Updated 2 years ago
- OWASP Foundation Web Respository☆28Updated 2 years ago
- Report missing advisories and corrections on OSS Index☆17Updated 2 years ago
- ☆14Updated 2 years ago
- A walkthrough of security controls for a serverless architecture via a demo application☆11Updated 2 years ago
- Safelog4j is an instrumentation-based security tool to help teams discover, verify, and solve log4shell vulnerabilities without scanning …☆41Updated 8 months ago
- InfoSec OpenAI Examples☆19Updated last year
- ☆38Updated 9 months ago
- Defending IaaS with ATT&CK is a project to create a collection of ATT&CK techniques relevant to a Linux IaaS environment, as well as a me…☆13Updated 11 months ago
- ☆23Updated 3 years ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆27Updated 11 months ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆21Updated last year
- A meta-database collecting resources that compile lists of breaches☆18Updated 3 months ago
- Decision trees generated via Graphviz to inform pragmatic threat modelling.☆11Updated 4 years ago
- A Java library for calculating CVSSv2 and CVSSv3 scores and vectors☆44Updated 2 months ago
- Automate vulnerability triage which prioritizes remediation over discovery☆14Updated this week
- Global Security Database Tools☆42Updated last year
- javaspringvulny - a Spring Boot web application built wrong on purpose☆19Updated this week