franksec42 / Vulnerability-management-maturityLinks
Maturity Model Collaborative project
☆15Updated 2 years ago
Alternatives and similar repositories for Vulnerability-management-maturity
Users that are interested in Vulnerability-management-maturity are comparing it to the libraries listed below
Sorting:
- InfoSec OpenAI Examples☆19Updated last year
- Dependency Combobulator☆93Updated last year
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆66Updated 3 months ago
- ☆113Updated 2 years ago
- An example of a mis-configured Rails application release under MIT license.☆20Updated 2 years ago
- Virtual Security Operations Center☆51Updated 2 years ago
- ZAP scripts to implement ASVS L1 checking☆16Updated 3 years ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 4 years ago
- GCP GOAT is the vulnerable application for learn the GCP Security☆67Updated 4 months ago
- GHAST (GitHub Actions Static Analysis Tool) is a tool to analyze the security posture of your GitHub Actions and its surrounding environm…☆21Updated 2 years ago
- Kenna Security API and Scripting Toolkit☆34Updated 2 weeks ago
- ☆60Updated 2 years ago
- All-in-one tool for managing vulnerability reports from AppSec pipelines☆108Updated 2 years ago
- CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space.☆33Updated 3 years ago
- 🖇️ STRIDE vs. ASVS equivalence table☆77Updated last year
- Docs: Vulnerability management aggregation of AppSec & OpSec (Tools Listing)☆31Updated 2 years ago
- Offensive Terraform module which creates Kali Linux from the AWS marketplace and installs cloud security tools (Pacu, Cloudsplaining, Sco…☆18Updated 5 years ago
- An experimental project using LLM technology to generate security documentation for Open Source Software (OSS) projects☆34Updated 7 months ago
- Scan your EC2 instance to find its vulnerabilities using Vuls (https://vuls.io/en/)☆89Updated 2 years ago
- A set of AWS resources for testing the Log4Shell vulnerability, deployable with terraform☆12Updated 3 years ago
- ☆61Updated 4 months ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆42Updated last year
- Build a CVE library with aggregated CISA, EPSS and CVSS data☆29Updated 2 years ago
- ☆41Updated 7 months ago
- Salesforce Policy Deviation Checker☆30Updated 5 years ago
- OWASP Foundation Web Respository☆37Updated last year
- ☆19Updated 3 years ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆78Updated 3 years ago
- A framework for understanding the capabilities of automated detection methods at identifying classes of application security vulnerabilit…☆32Updated this week
- Autoconfigured ELK Stack That Contains All EPSS and NVD CVE Data☆52Updated 3 months ago