argonsecurity / pipeline-parserLinks
☆16Updated last month
Alternatives and similar repositories for pipeline-parser
Users that are interested in pipeline-parser are comparing it to the libraries listed below
Sorting:
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆759Updated 10 months ago
- ☆20Updated 2 years ago
- Documenting your Threat Models with HCL☆433Updated this week
- Curating Falco rules with MITRE ATT&CK Matrix☆84Updated last year
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆497Updated this week
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆95Updated 8 months ago
- ☆182Updated 5 months ago
- An open project to list all publicly known cloud vulnerabilities and CSP security issues☆362Updated last month
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆137Updated last year
- Prisma Cloud SDK in Go☆18Updated 6 months ago
- Trivy's misconfiguration scanning engine☆216Updated 8 months ago
- CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.☆289Updated last year
- OSV-SCALIBR: A library for Software Composition Analysis☆516Updated this week
- Generate a score for your sbom to understand if it will actually be useful.☆234Updated last year
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated 9 months ago
- The security workflow engine!☆126Updated this week
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆86Updated last year
- Scan GitHub Actions Workflow logs for IOCs☆15Updated last week
- Utility that provides an API platform for validating, querying and managing BOM data☆120Updated 3 weeks ago
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆121Updated 3 weeks ago
- ☆115Updated 2 months ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆73Updated 2 years ago
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆211Updated last week
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆101Updated this week
- ☆11Updated this week
- Supply-Chain Firewall (SCFW) is a tool for preventing the installation of malicious npm and PyPI packages☆168Updated this week
- A curated list of resources about detecting threats and defending Kubernetes systems.☆397Updated 2 years ago
- Evaluate the RBAC permissions of Kubernetes identities through policies written in Rego☆351Updated 6 months ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated last year
- Tool for building Kubernetes attack paths☆916Updated 2 weeks ago