bcdannyboy / EnterpriseSASTDASTProductLandscape
Analysis of the Enterprise SAST/DAST product landscape
☆36Updated last year
Alternatives and similar repositories for EnterpriseSASTDASTProductLandscape:
Users that are interested in EnterpriseSASTDASTProductLandscape are comparing it to the libraries listed below
- A PoC to Simulate Ransomware Attack on AWS Environment☆30Updated 5 months ago
- This tool analyzes a given Gitlab repository and searches for dangling or force-pushed commits containing potential secret or interesting…☆46Updated 7 months ago
- An LLM and OCR based Indicator of Compromise Extraction Tool☆33Updated 3 months ago
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated last year
- Blogpost series showcasing interesting cloud - web app security bugs☆47Updated last year
- ☆43Updated 9 months ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆40Updated last year
- Collection of Docker honeypot logs from 2021 - 2024☆36Updated 5 months ago
- HoneyZure is a honeypot tool specifically designed for Azure environments, fully provisioned through Terraform. It leverages a Log Analyt…☆16Updated 9 months ago
- Manager of third-party sources of Semgrep rules 🗂☆80Updated 8 months ago
- ☆55Updated last year
- Examine Chrome extensions for security issues☆80Updated 2 weeks ago
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobs☆36Updated 5 months ago
- Dont Gamble with Risk☆14Updated last year
- PlasmaPup is designed to help central and departmental IT personnel understand their exposures in Active Directory by showing which accou…☆27Updated 11 months ago
- Create tar/zip archives that try to exploit zipslip vulnerability.☆47Updated 6 months ago
- A multi-cloud DNS record scanner that aims to help cybersecurity/IT analysts identify dangling CNAME records in their cloud DNS services …☆49Updated 2 years ago
- ☆33Updated 3 years ago
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆51Updated last year
- Do bulk whois lookups and get alerted on domains of interest.☆34Updated 7 months ago
- Semgrep-based Policy Controller for Kubernetes☆47Updated last week
- A not-curated list of cloud hacking labs☆23Updated 11 months ago
- ☆32Updated 7 months ago
- A comprehensive knowledge base for security professionals to keep track of and build defenses against API attack techniques.☆42Updated 6 months ago
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆132Updated this week
- ☆17Updated 2 years ago
- CLI Search for Security Operators of MITRE ATT&CK URLs☆16Updated 2 years ago
- Virtual Security Operations Center☆50Updated last year
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆22Updated 2 weeks ago