Whitespots-OU / security-requirements-generatorLinks
A small tool to help developers understand a huge set of security requirements from appsec teams
โ45Updated 2 years ago
Alternatives and similar repositories for security-requirements-generator
Users that are interested in security-requirements-generator are comparing it to the libraries listed below
Sorting:
- ๐๏ธ STRIDE vs. ASVS equivalence tableโ76Updated 9 months ago
- โ63Updated 2 years ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. โฆโ65Updated 11 months ago
- Semgrep rules corresponding to the OWASP ASVS standardโ27Updated 4 years ago
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.โ108Updated last year
- โ123Updated last year
- โ87Updated 3 years ago
- ๐งช Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.โ39Updated 5 months ago
- โ33Updated 3 years ago
- โ111Updated last year
- Protect against subdomain takeoverโ92Updated last year
- A step-by-step walkthrough of CloudGoat 2.0 scenarios.โ134Updated 5 years ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagramsโ105Updated 4 months ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.โ172Updated 6 months ago
- LLM Testing Findings Templatesโ72Updated last year
- Dragon-GPT uses Chat-GPT, or local LLM, to execute automatic and AI-powered threat modeling analysis on a given OWASP Threat Dragon diagrโฆโ35Updated 3 months ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.โ41Updated last year
- โ35Updated 4 years ago
- Create notes during a security code review in VSCode ๐ Import your favorite SAST tool findings ๐ ๏ธ and collaborate with others ๐คโ133Updated 2 months ago
- Presentations, training modules, and other education materials from Duo Security's Application Security team.โ74Updated 3 years ago
- GCP GOAT is the vulnerable application for learn the GCP Securityโ64Updated 2 weeks ago
- A project to visualize the software supply chainโ52Updated last year
- An extensive list of resources related to threat modelling. Gotta catch โem all!โ35Updated 3 months ago
- ๐งฎ An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessmentโ158Updated 3 years ago
- Threat Modeling Manifestoโ28Updated 10 months ago
- โ32Updated 4 years ago
- InfoSec OpenAI Examplesโ19Updated last year
- Discover vulnerabilities and container image misconfiguration in production environments.โ56Updated last week
- The Open Security Summit is focused on the collaboration between, Developers and Application Securityโ45Updated 5 months ago
- AI featured threat modeling and security review actionโ44Updated 6 months ago