SecureStackCo / actions-code
A GitHub Action for using SecureStack to analyse a repository codebase for vulnerabilities in library dependencies (software composition analysis).
☆21Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for actions-code
- SecureStack Application Bill of Materials (ABOM/SBOM)☆13Updated 2 years ago
- A GitHub Action that scans your public web applications for log4j vulnerabilities after every deployment. Add this to your dev, staging a…☆15Updated 2 years ago
- Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host s…☆28Updated last year
- All of our GitHub Actions rolled into one. Or as we like to say: One GitHub Action to rule them all!☆21Updated last year
- A GitHub Action that creates a SBOM from your application so you can meet compliance and security requirements. Add this to your dev, sta…☆25Updated last year
- A GitHub Action that scans your public web applications after every deployment. Add this to your dev, staging and prod steps and SecureS…☆24Updated last year
- Chrome extension for automating CSPT discovery☆47Updated last month
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆48Updated 2 years ago
- Fetch wayback machine historical content for a given url☆9Updated 4 years ago
- Running nuclei Continuously☆55Updated 2 years ago
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆51Updated 2 months ago
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆88Updated 7 months ago
- Make exploiting race conditions in web applications highly efficient and ease-of-use.☆22Updated 6 months ago
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆16Updated 3 years ago
- Let's check if your target is vulnerable for client side prototype pollution.☆63Updated 10 months ago
- CircleCI log and security configuration automations☆22Updated 4 years ago
- Python's handling of NaN is....interesting?broken?...this project illustrates the issue☆13Updated 2 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆30Updated last year
- Converts a hostname (or URI) to IP address using your local resolver☆24Updated 7 months ago
- The commands and scripts I used in the Live Recon Village talks☆38Updated 3 years ago
- My Custom made Nuceli-Templates☆23Updated last year
- This script scrapes the list of open Bug Bounty Programs from openbugbounty.org☆26Updated 2 years ago
- Go fish for AWS EIPs☆46Updated 3 years ago
- ☆14Updated 3 years ago
- Manager of third-party sources of Semgrep rules 🗂☆76Updated 3 months ago
- Simple tool to test for SSRF/OOB HTTP Read within the Path of a request☆30Updated 5 years ago
- A collection of scripts for bug-bounty related stuff☆38Updated 4 years ago
- ☆18Updated 3 years ago