chainguard-dev / malcontentLinks
#supply #chain #attack #detection
☆534Updated this week
Alternatives and similar repositories for malcontent
Users that are interested in malcontent are comparing it to the libraries listed below
Sorting:
- Validate the isolation posture of your container environment.☆296Updated this week
- A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerabilit…☆324Updated this week
- Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact pro…☆492Updated this week
- boostsecurityio/poutine☆308Updated last week
- A tool for preventing the installation of malicious npm and PyPI packages☆153Updated this week
- Documenting your Threat Models with HCL☆432Updated 2 months ago
- A security layer for Git repositories☆537Updated this week
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆116Updated 2 months ago
- BLint is a Binary Linter to check the security properties, and capabilities in your executables. Since v2, blint is also an SBOM generato…☆394Updated last week
- OpenVEX Specification☆156Updated 2 months ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆110Updated 2 weeks ago
- Gram is Klarna's own threat model diagramming tool☆322Updated last week
- OSV-SCALIBR: A library for Software Composition Analysis☆398Updated last week
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated last year
- A reading list for software supply-chain security.☆363Updated 2 years ago
- Practical resources for offensive CI/CD security research. Curated the best resources I've seen since 2021.☆534Updated 5 months ago
- GuardDog is a CLI tool to Identify malicious PyPI and npm packages☆778Updated 2 weeks ago
- GitHub Actions Pipeline Enumeration and Attack Tool☆689Updated last month
- Scans Software Bill of Materials (SBOMs) for security vulnerabilities☆574Updated 4 months ago
- Tool for building Kubernetes attack paths☆896Updated 2 weeks ago
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆101Updated this week
- Production-ready detection & response queries for osquery☆581Updated last week
- Runtime Security Solution for your CI/CD Pipeline☆108Updated last month
- A curated list of resources about detecting threats and defending Kubernetes systems.☆387Updated last year
- ☆179Updated 3 months ago
- App that simplifies building decision trees to model adverse scenarios☆215Updated last year
- Enrich SBOMs with data from third party services☆181Updated 2 weeks ago
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆135Updated last year
- ☆81Updated last month
- A full insecure kubernetes application for testing security tools☆89Updated 3 months ago