contrastsecurity / contrastLinks
CodeSec by Contrast - The fastest and most accurate SAST scanner. Scan code and serverless environments
☆20Updated last year
Alternatives and similar repositories for contrast
Users that are interested in contrast are comparing it to the libraries listed below
Sorting:
- A simple script which implements different Cognito attacks such as Account Oracle or Priviledge Escalation☆107Updated last year
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆143Updated 9 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆61Updated 2 years ago
- ☆39Updated last year
- OWASP Foundation Web Respository☆47Updated last week
- Vulnerable by Design AWS Cloud Development Kit (CDK) Infrastructure☆48Updated last year
- Focused malicious code detection ruleset, with a high protection-to-noise ratio☆127Updated 8 months ago
- ☆55Updated 2 years ago
- InfoSec OpenAI Examples☆19Updated last year
- Clean accounts over permissions in GCP infra at scale☆71Updated 2 years ago
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆40Updated last year
- A project to visualize the software supply chain☆53Updated 2 years ago
- An AWS metadata enumeration tool by Plerion☆98Updated last year
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆138Updated this week
- A public cloud security knowledgebase - https://www.secwiki.cloud/☆51Updated 11 months ago
- find dangling domains in a multi cloud environment☆171Updated this week
- A tool for scanning public or private AMIs for sensitive files and secrets. The tool follows the research made on AWS CloudQuarry where w…☆110Updated 11 months ago
- Semgrep-based Policy Controller for Kubernetes☆47Updated 6 months ago
- ☆50Updated last year
- ☆62Updated 4 months ago
- TrailAlerts is a AWS-native, serverless cloud-detection tool that lets you define simple rules as code and get rich alerts about events i…☆51Updated 5 months ago
- LLM Testing Findings Templates☆74Updated last year
- ☆191Updated 6 months ago
- A GitHub Action that creates a SBOM from your application so you can meet compliance and security requirements. Add this to your dev, sta…☆25Updated 2 years ago
- Demonstrates how a malicious dependency could negatively impact the build output.☆24Updated 2 years ago
- MetaHub is an automated contextual security findings enrichment and impact evaluation tool for vulnerability management.☆175Updated last week
- ☆140Updated 3 weeks ago
- 🖇️ STRIDE vs. ASVS equivalence table☆77Updated last year
- A tool to uncover undocumented APIs from the AWS Console.☆114Updated 6 months ago
- A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or art…☆61Updated 2 weeks ago