google / osv-scalibr
β102Updated this week
Alternatives and similar repositories for osv-scalibr:
Users that are interested in osv-scalibr are comparing it to the libraries listed below
- β108Updated last week
- A Server Side Request Forgery (SSRF) protection library. Made with π€ by Doyensec LLC.β96Updated 8 months ago
- Automated testing, generation & manipulation of #osquery packsβ71Updated 3 months ago
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko geneβ¦β103Updated 8 months ago
- β51Updated 3 weeks ago
- β74Updated 3 weeks ago
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.β71Updated last year
- β35Updated this week
- GCP CSPM using Google Sheetsβ34Updated 7 months ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).β80Updated 11 months ago
- β74Updated last month
- A tool to check the security settings of Github Organizations.β70Updated last year
- K8s API Honeypot with Active Defense Capabilitiesβ40Updated last year
- [Experimental] jail for Go modulesβ40Updated this week
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).β27Updated 10 months ago
- Compares and analyzes GCP IAM roles.β77Updated 7 months ago
- A security tool designed to help review merged code changes to open source maintained repositories via LLM assisted review to safeguard aβ¦β30Updated 2 months ago
- Format agnostic SBOM toolingβ94Updated this week
- prel(iminary) is an application that temporarily assigns Google Cloud IAM Roles and includes an approval process.β38Updated this week
- OpenVEX Specificationβ139Updated 6 months ago
- A GitHub App that acts like a Security Token Service (STS) for the Github APIβ145Updated this week
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,β¦β130Updated 11 months ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by useβ¦β66Updated 2 years ago
- β56Updated 2 years ago
- vexctl is a tool to attest VEX impact statementsβ44Updated last year
- A tool for preventing the installation of malicious PyPI and npm packagesβ108Updated last month
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utilityβ61Updated last year
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflowsβ82Updated this week
- β47Updated this week
- A tool to create, transform and attest VEX metadataβ125Updated this week