Santandersecurityresearch / cryptobom-forge
Tools and utilities needed to parse GitHub Multi-Repository Variant Analysis output
☆20Updated 7 months ago
Alternatives and similar repositories for cryptobom-forge
Users that are interested in cryptobom-forge are comparing it to the libraries listed below
Sorting:
- This repository contains a SonarQube Plugin that detects cryptographic assets in source code and generates CBOM.☆33Updated this week
- A toolset for dealing with Cryptography Bill of Materials (CBOM)☆30Updated this week
- PQC Transition Tools Index☆31Updated 2 months ago
- Cryptography Bill of Materials☆68Updated 3 months ago
- ☆47Updated this week
- A community collection of security reviews of open source software components.☆93Updated last year
- Working Group on Artificial Intelligence and Machine Learning (AI/ML) Security☆79Updated 6 months ago
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆59Updated last year
- A standard API specification for exchanging supply chain artifacts and intelligence☆79Updated this week
- ☆105Updated 3 weeks ago
- ☆100Updated 7 months ago
- Scan GitHub Actions Workflow logs for IOCs☆15Updated this week
- The source files and tools needed to build the OWASP Cornucopia decks in various languages☆61Updated this week
- OWASP Foundation Web Respository☆16Updated last year
- Takes a software bill of materials and outputs provenance, and activity data from trustypkg.dev☆11Updated 7 months ago
- A CLI tool for creating secure by design/default source repos.☆25Updated 9 months ago
- Our mission is to catalyze sustainable improvements to critical open source software projects and ecosystems.☆97Updated last week
- Collect, curate, and communicate relevant security metrics for open source projects.☆63Updated last year
- OpenVEX Specification☆150Updated last month
- Library to ingest and generate VEX documents☆15Updated 3 months ago
- Network Cryptography Monitor - using eBPF, written in python☆32Updated last month
- Threat Modeling Manifesto☆28Updated 10 months ago
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different so…☆50Updated this week
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and disc…☆120Updated 4 months ago
- atom is a novel intermediate representation for applications and a standalone tool that is powered by chen.☆65Updated this week
- Global Security Database Tools☆42Updated last year
- General sigstore community repo☆41Updated this week
- OWASP Foundation Web Respository☆28Updated 8 months ago
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆133Updated last year
- Technical Advisory Council☆123Updated this week