cider-security-research / cicd-goat
A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.
☆1,996Updated 6 months ago
Alternatives and similar repositories for cicd-goat:
Users that are interested in cicd-goat are comparing it to the libraries listed below
- Automating situational awareness for cloud penetration tests.☆2,006Updated 3 weeks ago
- AWSGoat : A Damn Vulnerable AWS Infrastructure☆1,782Updated 2 months ago
- ♾️ Collection and Roadmap for everyone who wants DevSecOps. Hope your DevOps are more safe 😎☆1,869Updated 3 months ago
- The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.☆870Updated 6 months ago
- This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage clou…☆2,635Updated 4 months ago
- completely ridiculous API (crAPI)☆1,168Updated last week
- A curated list of awesome CI CD security resources☆531Updated 2 months ago
- ☆403Updated 2 years ago
- Checklist for container security - devsecops practices☆1,538Updated last year
- Threat matrix for CI/CD Pipeline☆743Updated 6 months ago
- 🛡️ Awesome Cloud Security Resources ⚔️☆2,121Updated 2 months ago
- AzureGoat : A Damn Vulnerable Azure Infrastructure☆814Updated 2 months ago
- ☆616Updated this week
- Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.☆1,533Updated 2 months ago
- ☆1,628Updated this week
- Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on p…☆4,601Updated last month
- Identify privilege escalation paths within and across different clouds☆678Updated 2 months ago
- Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)☆1,235Updated 7 months ago
- Vulnerable app with examples showing how to not use secrets☆1,263Updated this week
- Security Remediation Guides☆715Updated 3 weeks ago
- Practical resources for offensive CI/CD security research. Curated the best resources I've seen since 2021.☆503Updated 3 months ago
- A curated list of threat modeling resources (Books, courses - free and paid, videos, tools, tutorials and workshops to practice on ) for …☆1,445Updated 5 months ago
- A list of open source web security scanners☆988Updated 3 months ago
- An encyclopedia for offensive and defensive security knowledge in cloud native technologies.☆1,796Updated 3 weeks ago
- Granular, Actionable Adversary Emulation for the Cloud☆1,895Updated this week
- Ultimate DevSecOps library☆5,862Updated 2 months ago
- My cheatsheet notes to pentest AWS infrastructure☆666Updated 2 years ago
- 📚 A curated list of awesome Docker security resources☆650Updated 2 months ago
- Curated list of links, references, books videos, tutorials (Free or Paid), Exploit, CTFs, Hacking Practices etc. which are related to AWS…☆1,304Updated 3 months ago
- This is a step-by-step guide to implementing a DevSecOps program for any size organization☆1,943Updated last month