checkmarx-ts / CxUtilsLinks
Useful tools and Examples made by Checkmarx Professional Services
☆39Updated 3 weeks ago
Alternatives and similar repositories for CxUtils
Users that are interested in CxUtils are comparing it to the libraries listed below
Sorting:
- Checkmarx Health Monitor☆18Updated last year
- Checkmarx Scan and Result Orchestration☆99Updated this week
- Exports vulnerability scan data from the Checkmarx SAST platform for use in analytical tools.☆19Updated 11 months ago
- Checkmarx Python SDK☆29Updated 3 weeks ago
- Node application to help managing Maturity Models like the ones created by BSIMM and OpenSAMM☆195Updated 7 years ago
- A Continuous Threat Modeling methodology☆326Updated 3 years ago
- NextJS-based single-page application for completing and reviewing SAMM assessments☆76Updated 2 years ago
- Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilit…☆547Updated 3 years ago
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.☆110Updated last year
- SAMM stands for Software Assurance Maturity Model.☆395Updated 3 years ago
- OWASP Benchmark is a test suite designed to verify the speed and accuracy of software vulnerability detection tools. A fully runnable web…☆742Updated this week
- threatspec - continuous threat modeling, through code☆368Updated 4 years ago
- ☆540Updated last week
- Agile Threat Modeling Toolkit☆702Updated last month
- IriusRisk Community☆67Updated 2 years ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 4 years ago
- A Pythonic framework for threat modeling☆1,046Updated this week
- This project is about creating and publishing threat model examples.☆426Updated 3 years ago
- Security Champions Playbook v 2.1☆383Updated 2 years ago
- A collection of various scripts and automations to simplify Checkmarx SAST and IAST setup and use☆14Updated 7 years ago
- Purposely vulnerable Java application to help lead secure coding workshops☆187Updated last year
- Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependenci…☆854Updated 2 years ago
- This repository stores content that can be used to design a Rapid Threat Model Prototyping process for a software development group.☆163Updated 2 years ago
- Zap baseline scanner in Docker with authentication☆103Updated last year
- Fully open-source SAST scanner supporting a range of languages and frameworks. Integrates with major CI pipelines and IDE such as Azure D…☆149Updated 5 years ago
- Container Security Verification Standard☆58Updated 6 years ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆153Updated last year
- ☆111Updated last year
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆279Updated last week
- Python API library for DefectDojo☆44Updated 2 years ago