OWASP / www-project-non-human-identities-top-10Links
OWASP Non-Human Identities Top 10
☆40Updated 2 weeks ago
Alternatives and similar repositories for www-project-non-human-identities-top-10
Users that are interested in www-project-non-human-identities-top-10 are comparing it to the libraries listed below
Sorting:
- Semgrep-based Policy Controller for Kubernetes☆47Updated 9 months ago
- Security tool against dependency typosquatting attacks☆54Updated last week
- ☆71Updated 3 months ago
- RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and…☆158Updated last year
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆60Updated last year
- ☆138Updated this week
- ☆29Updated last month
- A web CTF for training developers in bug hunting and secure coding!☆100Updated last year
- An open-source collection of API key rotation tutorials.☆76Updated 4 months ago
- ☆430Updated last week
- Prevent merging of malicious code in pull requests☆252Updated 3 weeks ago
- ☆75Updated 10 months ago
- A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or art…☆70Updated 2 months ago
- A comprehensive security scanner for Model Context Protocol (MCP) servers that detects vulnerabilities and security issues in your MCP se…☆120Updated last month
- Audit your GitHub Actions workflow runs to see exactly which Actions were downloaded☆79Updated 2 weeks ago
- EZGHSA is a command-line tool for summarizing and filtering vulnerability alerts on Github repositories.☆35Updated 3 weeks ago
- ☆76Updated 3 months ago
- A flexible framework for security teams to build and deploy AI-powered workflows that complement their existing security operations.☆148Updated last week
- Supply-Chain Firewall (SCFW) is a tool for preventing the installation of malicious npm and PyPI packages☆214Updated last week
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobs☆37Updated last year
- Static code analyser for backdoors and malicious code in git repos using OpenAI compatible LLM APIs☆73Updated last year
- Baseline rules files to improve the security of AI-generated code (Claude, Cursor, Copilot + more)☆211Updated last month
- Tool for obfuscating and deobfuscating data.☆75Updated last year
- HashiCorp-relevant rules for the Semgrep code analysis tool☆41Updated 2 years ago
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆40Updated last year
- ☆43Updated 5 months ago
- A full insecure kubernetes application for testing security tools☆90Updated 3 months ago
- Protect against subdomain takeover☆95Updated 6 months ago
- A tool to uncover undocumented APIs from the AWS Console.☆116Updated 9 months ago
- MCP security wrapper☆207Updated 2 months ago