city-mobil / common_security_pipeline
GitLab CI security tools runner
☆17Updated last year
Alternatives and similar repositories for common_security_pipeline:
Users that are interested in common_security_pipeline are comparing it to the libraries listed below
- ☆74Updated 2 years ago
- Перевод BSIMM (https://www.bsimm.com) на русский язык☆22Updated 2 years ago
- A list of checks with tips for analyzing the security of Android applications☆11Updated 5 years ago
- Secrets scanner that understands code☆188Updated last year
- A small tool to help developers understand a huge set of security requirements from appsec teams☆45Updated 2 years ago
- ☆29Updated last year
- Kubolt utility for scanning public kubernetes clusters☆109Updated 7 months ago
- Docker image to exploit RCE, try for pentest methods and test container security solutions (trivy, falco and etc.)☆86Updated 4 years ago
- Examples for Advanced Web Hacking Workshop☆35Updated 5 years ago
- Yandex Cloud CloudQuery source plugin☆19Updated 2 months ago
- OWASP Dependency Track API client for intergration into CI/CD pipeline☆52Updated 6 months ago
- ☆41Updated 4 years ago
- Внедрение и эксплуатация PT Application Inspector. Подробнее: https://habr.com/ru/company/pt/blog/557142/☆34Updated 2 years ago
- DevSecOps Assessment Framework☆77Updated 3 weeks ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆99Updated last year
- Careful tool for security checking release apk/ipa files☆36Updated 3 years ago
- System of Orchestration, Lifecycle control, Detection and Response☆58Updated last year
- Awesome DevSecOps на русском языке☆308Updated last year
- Simple Authenticated Vulnerability Scanner for Linux hosts and Docker images☆42Updated last year
- Bundle of wordlists for brute-forcing subdomains (World + RUSSIA based).☆65Updated 6 years ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 4 years ago
- Python API library for DefectDojo☆41Updated last year
- ☆122Updated last year
- ☆42Updated last year
- Burp Suite plugin for binary search on HTTP parameters☆15Updated 7 years ago
- Packaging audit toolkit using vulners.com vulnerability database☆19Updated 6 years ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆61Updated 7 months ago
- Asynchronous HTTP pipelining directory buster☆22Updated 4 years ago
- ☆13Updated 4 years ago
- QCTF School 2018. Developed with ♥ by Hackerdom team☆12Updated 6 years ago