apiiro / malicious-code-ruleset
Focused malicious code detection ruleset, with a high protection-to-noise ratio
โ111Updated last month
Alternatives and similar repositories for malicious-code-ruleset:
Users that are interested in malicious-code-ruleset are comparing it to the libraries listed below
- ๐งช Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.โ39Updated 3 months ago
- boostsecurityio/lotpโ116Updated 2 weeks ago
- Prevent merging of malicious code in pull requestsโ211Updated last week
- A powerful tool that leverages AI to automatically generate comprehensive security documentation for your projectsโ58Updated last week
- Enriching the NVD CVSS scores to include Temporal & Threat Metricsโ174Updated this week
- A tool for preventing the installation of malicious PyPI and npm packagesโ130Updated this week
- Nuclei plugins to audit Chrome extensionsโ64Updated 8 months ago
- A Risk-Based Prioritization Taxonomy for prioritizing CVEs (Common Vulnerabilities and Exposures).โ73Updated 10 months ago
- โ61Updated 2 months ago
- โ164Updated 6 months ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagramsโ102Updated last month
- An experimental project using LLM technology to generate security documentation for Open Source Software (OSS) projectsโ26Updated 3 weeks ago
- truffleproc โ hunt secrets in process memory (TruffleHog & gdb mashup)โ114Updated last year
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,โฆโ132Updated last year
- Simple Workspace Attack Tool (SWAT) is a tool for simulating malicious behavior against Google Workspace in reference to the MITRE ATT&CKโฆโ164Updated 5 months ago
- A web CTF for training developers in bug hunting and secure coding!โ97Updated 2 months ago
- โ72Updated last week
- Semgrep-based Policy Controller for Kubernetesโ47Updated last week
- Manager of third-party sources of Semgrep rules ๐โ81Updated 8 months ago
- Create notes during a security code review in VSCode ๐ Import your favorite SAST tool findings ๐ ๏ธ and collaborate with others ๐คโ132Updated this week
- โ98Updated 2 weeks ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.โ40Updated last year
- โ110Updated last year
- A full insecure kubernetes application for testing security toolsโ70Updated this week
- โ36Updated 2 months ago
- Security tool against dependency typosquatting attacksโ39Updated this week
- Build a CVE library with aggregated CISA, EPSS and CVSS dataโ27Updated last year
- a hackbot proof-of-conceptโ38Updated last year
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessmentsโ138Updated 2 months ago
- Monthly CVE Statsโ41Updated 3 weeks ago