Santandersecurityresearch / cryptobom-forgeLinks
Tools and utilities needed to parse GitHub Multi-Repository Variant Analysis output
☆20Updated this week
Alternatives and similar repositories for cryptobom-forge
Users that are interested in cryptobom-forge are comparing it to the libraries listed below
Sorting:
- A toolset for dealing with Cryptography Bill of Materials (CBOM)☆31Updated this week
- PQC Transition Tools Index☆31Updated 3 months ago
- This repository contains a SonarQube Plugin that detects cryptographic assets in source code and generates CBOM.☆35Updated this week
- Network Cryptography Monitor - using eBPF, written in python☆33Updated this week
- ☆47Updated this week
- Working Group on Artificial Intelligence and Machine Learning (AI/ML) Security☆80Updated 7 months ago
- The Secure Coding Framework☆22Updated 5 years ago
- A standard API specification for exchanging supply chain artifacts and intelligence☆81Updated 2 weeks ago
- Cryptography Bill of Materials☆68Updated 4 months ago
- Source code secret scanner☆53Updated last year
- Website and API for OpenSSF Scorecard☆24Updated last week
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆135Updated last year
- OWASP Foundation Web Respository☆10Updated 2 years ago
- An open-source collection of API key rotation tutorials.☆70Updated 3 months ago
- OpenVEX Specification☆151Updated 2 weeks ago
- Scan GitHub Actions Workflow logs for IOCs☆15Updated last week
- ☆62Updated 11 months ago
- OWASP Foundation Web Respository☆31Updated 2 years ago
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different so…☆50Updated last week
- A tool for detecting cryptographic assets in container images and directories, and generating CBOMs.☆15Updated this week
- Format agnostic SBOM tooling☆108Updated this week
- A community collection of security reviews of open source software components.☆95Updated last year
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobs☆37Updated 8 months ago
- ☆110Updated this week
- Post-quantum cryptography certificates☆66Updated 2 weeks ago
- General sigstore community repo☆41Updated last week
- Library to ingest and generate VEX documents☆15Updated 4 months ago
- GitHub Advanced Security Policy as Code☆83Updated last week
- Collect, curate, and communicate relevant security metrics for open source projects.☆63Updated last year
- Github action to generate BoM and upload to OWASP dependency track for vulnerability analysis☆42Updated 9 months ago