chainguard-dev / malcontentLinks
#supply #chain #attack #detection
☆530Updated this week
Alternatives and similar repositories for malcontent
Users that are interested in malcontent are comparing it to the libraries listed below
Sorting:
- Validate the isolation posture of your container environment.☆291Updated 2 weeks ago
- boostsecurityio/poutine☆306Updated 2 weeks ago
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆488Updated last week
- BLint is a Binary Linter to check the security properties, and capabilities in your executables. Since v2, blint is also an SBOM generato…☆388Updated last month
- Documenting your Threat Models with HCL☆432Updated last month
- A tool for preventing the installation of malicious npm and PyPI packages☆150Updated last week
- Gram is Klarna's own threat model diagramming tool☆319Updated this week
- A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerabilit…☆316Updated this week
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆116Updated 2 months ago
- A security layer for Git repositories☆535Updated this week
- Practical resources for offensive CI/CD security research. Curated the best resources I've seen since 2021.☆530Updated 4 months ago
- GitHub Actions Pipeline Enumeration and Attack Tool☆680Updated 2 weeks ago
- Tool for building Kubernetes attack paths☆890Updated 2 weeks ago
- Production-ready detection & response queries for osquery☆579Updated 2 weeks ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆110Updated last week
- OpenVEX Specification☆155Updated last month
- GuardDog is a CLI tool to Identify malicious PyPI and npm packages☆758Updated 3 weeks ago
- OSV-SCALIBR: A library for Software Composition Analysis☆355Updated this week
- A curated list of resources about detecting threats and defending Kubernetes systems.☆385Updated last year
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆284Updated 5 months ago
- App that simplifies building decision trees to model adverse scenarios☆215Updated last year
- A repo to conduct vulnerability enrichment.☆651Updated this week
- Runtime Security Solution for your CI/CD Pipeline☆105Updated last month
- Awesome secure by default libraries to help you eliminate bug classes!☆697Updated 2 months ago
- A reading list for software supply-chain security.☆363Updated 2 years ago
- Scans Software Bill of Materials (SBOMs) for security vulnerabilities☆571Updated 3 months ago
- Deep Linux runtime visibility meets Wireshark☆292Updated 3 weeks ago
- Linux Process Discovery. C Library, Go bindings, Runtime.☆222Updated 2 years ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated last year
- A universal SBOM representation in protocol buffers☆293Updated this week