carbonetes / brainiac
BrainIAC uses static code analysis to analyze IAC code to detect security issues before deployment. This tool can scan for issues like security policy misconfigurations, insecure cloud-based services, and compliance issues.
☆70Updated 6 months ago
Alternatives and similar repositories for brainiac:
Users that are interested in brainiac are comparing it to the libraries listed below
- Generates SBOMs for container images, filesystems, archives, and more to Discover packages and libraries Highly scalable data pipelines f…☆105Updated 2 weeks ago
- A Github Action that utilizes Diggity to generate software bill-of-materials (SBOM).☆14Updated 2 years ago
- Jacked provides organizations with a more comprehensive look at their application to take calculated actions and create a better security…☆102Updated last month
- ☆18Updated 8 months ago
- FedRAMP Automation☆16Updated last year
- Awesome AWS service control policies (SCPs)☆25Updated 2 months ago
- ☆15Updated 3 years ago
- Website for OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆21Updated 2 months ago
- Engineering Guidance and Standards for the Home Office☆18Updated this week
- Repository for the generation of OSCAL data types☆23Updated last week
- ☆16Updated last year
- ☆14Updated 2 years ago
- ☆16Updated 7 months ago
- OSCAL and Kyverno Policy Demo for AWS☆12Updated last year
- ☆22Updated 2 years ago
- AWS honey token manager☆87Updated 8 months ago
- Be notified of EC2 instance events 🚀 from any region 🗺️ via a Cloudtrail CloudWatch Logs subscription filter !Rules☆9Updated 4 years ago
- A collection of useful queries that can be used to verify compliance/security across your AWS assets☆31Updated 5 years ago
- AWS SSO Reporter☆54Updated last year
- Demo setup for compliance-trestle☆33Updated 3 weeks ago
- A case study for ACSAC 2022 utilizing OSCAL with a custom GitHub action to automate assessments.☆24Updated 2 years ago
- NIST SP 800-171 OSCAL Content☆13Updated 2 years ago
- Slack alert bot for matching Github Audit Events☆10Updated 4 months ago
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆54Updated 3 months ago
- Scripts to quickly fix security and compliance issues☆26Updated last year
- NIST OSCAL SDK and CLI☆38Updated 4 years ago
- Generate VEX (Vulnerability Exploitability Exchange) CycloneDX documents☆20Updated 2 months ago
- Coalfire AWS RAMP/pak Reference Architecture☆36Updated 7 months ago
- ☆21Updated last year
- InSpec profile to validate the secure configuration of Red Hat Enterprise Linux 7, against DISA's Red Hat Enterprise Linux 7 Security Tec…☆14Updated 2 months ago