OWASP / www-project-non-human-identities-top-10Links
OWASP Non-Human Identities Top 10
☆39Updated 3 weeks ago
Alternatives and similar repositories for www-project-non-human-identities-top-10
Users that are interested in www-project-non-human-identities-top-10 are comparing it to the libraries listed below
Sorting:
- An open-source collection of API key rotation tutorials.☆74Updated last month
 - An OpenAI API Compatible Honeypot Gateway☆16Updated 7 months ago
 - Semgrep-based Policy Controller for Kubernetes☆47Updated 6 months ago
 - This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆59Updated 9 months ago
 - Focused malicious code detection ruleset, with a high protection-to-noise ratio☆127Updated 8 months ago
 - ☆75Updated 7 months ago
 - Security tool against dependency typosquatting attacks☆54Updated this week
 - ☆69Updated last week
 - RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and…☆155Updated 11 months ago
 - Baseline rules files to improve the security of AI-generated code (Claude, Cursor, Copilot + more)☆175Updated 4 months ago
 - Static code analyser for backdoors and malicious code in git repos using OpenAI compatible LLM APIs☆73Updated last year
 - Pentester-focused Docker registry tool to enumerate and pull images☆35Updated 2 weeks ago
 - A catalog of services that can be publicly exposed within different cloud providers.☆15Updated last year
 - A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and disc…☆130Updated 9 months ago
 - Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆142Updated 10 months ago
 - Unauthenticated enumeration of AWS IAM Roles.☆25Updated last month
 - MCP security wrapper☆198Updated last week
 - A web CTF for training developers in bug hunting and secure coding!☆101Updated 9 months ago
 - A knowledge source about TTPs used to target GenAI-based systems, copilots and agents☆126Updated last month
 - YouShallNotPass brings an added level of execution security to mission-critical CI/CD Systems.☆37Updated last year
 - MCP Snitch is a macOS application that intercepts and monitors MCP server communications, providing security analysis, access control, an…☆76Updated 2 weeks ago
 - vBrowser is a secure, containerized browser platform designed for covert web investigations. Originally created to support deep and dark …☆20Updated 2 months ago
 - HASH (HTTP Agnostic Software Honeypot)☆140Updated last year
 - A flexible framework for security teams to build and deploy AI-powered workflows that complement their existing security operations.☆133Updated last week
 - boostsecurityio/lotp☆136Updated last week
 - ☆28Updated last month
 - A tool to uncover undocumented APIs from the AWS Console.☆114Updated 6 months ago
 - A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or art…☆63Updated 3 weeks ago
 - Prevent merging of malicious code in pull requests☆238Updated 7 months ago
 - Independently deploy customized honeyservices in AWS to trigger alerts on unauthorized access. It utilizes a dedicated CloudTrail for pre…☆51Updated 11 months ago