A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and other resources. The taxonomy as well as related safeguards can be explored using an interactive visualization tool.
☆82Jul 25, 2026Updated this week
Alternatives and similar repositories for risk-explorer-for-software-supply-chains
Users that are interested in risk-explorer-for-software-supply-chains are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Feed parsing for language package manager updates☆90Jun 1, 2026Updated last month
- Collating an overview of the open source software supply chain landscape -- and synthesizing that survey in a hopefully-useful way.☆35Apr 4, 2023Updated 3 years ago
- A compilation of resources in the software supply chain security domain, with emphasis on open source☆373Jun 7, 2026Updated last month
- ☆22Jul 16, 2025Updated last year
- A place to systematically store software bill of materials (SBOM) documents.☆51Jun 1, 2023Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A fork of Bandit tool with patterns to identifying malicious python code.☆31Sep 1, 2022Updated 3 years ago
- DepTrim automatically specializes the software supply chain of dependencies in Maven projects https://arxiv.org/pdf/2302.08370☆15Jun 5, 2026Updated last month
- Web app to grade your assessments anywhere☆12Dec 31, 2025Updated 6 months ago
- Web app to grade your assessments anywhere☆24Jan 26, 2026Updated 6 months ago
- software art polyglot studio☆26Jul 14, 2026Updated 2 weeks ago
- Some stuff about the TCP flags field in NetFlow/IPFIX Data☆12Dec 31, 2015Updated 10 years ago
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆150Jan 28, 2024Updated 2 years ago
- A filter cascade implementation in rust☆15Apr 5, 2023Updated 3 years ago
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆140Oct 5, 2022Updated 3 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Experimental script to query rebuilderd for results☆14Dec 4, 2023Updated 2 years ago
- Source code and data about our large scale study about Java annotaion in practice☆12Apr 14, 2023Updated 3 years ago
- ☆13Feb 11, 2022Updated 4 years ago
- action language providing open class mechanism to xtend/java☆25Oct 11, 2023Updated 2 years ago
- The Melange Language Workbench☆30Aug 18, 2023Updated 2 years ago
- Downloads ranking of npm packages in different time periods. Npm包在不同时间段的下载量排行☆15Jul 25, 2023Updated 3 years ago
- This repository stores meetings minutes for the SPDX project☆43Updated this week
- Kestrel Jupyter Notebook Kernel☆10Oct 19, 2023Updated 2 years ago
- VulnAgent is an experimental AI-assisted cybersecurity agent framework that orchestrates modular agents using LLMs and domain-specific to…☆21Mar 24, 2026Updated 4 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- MUSIC: MUtation analySIs tool with High Configurability and Extensibility