appsecpipeline / gasp-dockerLinks
Simple implementation of an AppSec Pipeline using the Gasp library
☆13Updated 6 years ago
Alternatives and similar repositories for gasp-docker
Users that are interested in gasp-docker are comparing it to the libraries listed below
Sorting:
- A Security Scanner for Go☆26Updated 6 years ago
- Security scanning & static analysis tool☆94Updated last year
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆105Updated 6 years ago
- Clean accounts over permissions in GCP infra at scale☆71Updated 2 years ago
- ☆21Updated 7 years ago
- Modular Kubernetes lab which provides an easy and streamlined way to deploy a test cluster with support for different components.☆53Updated 2 weeks ago
- ☆27Updated 2 weeks ago
- prel(iminary) is an application that temporarily assigns Google Cloud IAM Roles and includes an approval process.☆46Updated this week
- An implementation of infrastructure-as-code scanning using dynamic tooling.☆56Updated 3 years ago
- Scanner to identify dangling DNS records and subdomain takeovers☆49Updated 11 months ago
- ☆74Updated 5 years ago
- PolicyGlass allows you to analyse one or more AWS policies' effective permissions in aggregate, by restating them in the form of PolicySh…☆60Updated 3 years ago
- Offensive Terraform Website☆45Updated 5 years ago
- ☆10Updated 3 years ago
- ☆28Updated 5 years ago
- Discover vulnerabilities and container image misconfiguration in production environments.☆56Updated last month
- a tool to audit the istio service mesh☆173Updated 3 years ago
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.☆161Updated last year
- Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).☆143Updated 5 months ago
- ☆18Updated last year
- HashiCorp-relevant rules for the Semgrep code analysis tool☆42Updated 2 years ago
- Compares and analyzes GCP IAM roles.☆77Updated 7 months ago
- CloudSplaining on AWS Managed Policies☆44Updated last month
- Scan your EC2 instance to find its vulnerabilities using Vuls (https://vuls.io/en/)☆89Updated 2 years ago
- ☆115Updated 2 months ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆67Updated 3 months ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆177Updated 10 months ago
- Terraform module which provides easy to configure AWS environment for running automated security scanning solutions at scheduled interval…☆46Updated 6 years ago
- Reapsaw is a continuous security devsecops tool, which helps in enabling security into CI/CD Pipeline. It supports coverage for multiple …☆41Updated 5 years ago
- Gordon is status check Github app to enforce and validate about.yaml file specifications in a repository during pull requests to drive co…☆20Updated 8 months ago