microsoft / Threat-Matrix-for-KubernetesLinks
Microsoft Defender for Cloud threat matrix for Kubernetes
☆25Updated 2 years ago
Alternatives and similar repositories for Threat-Matrix-for-Kubernetes
Users that are interested in Threat-Matrix-for-Kubernetes are comparing it to the libraries listed below
Sorting:
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.☆25Updated 9 months ago
- ☆90Updated 2 months ago
- ☆113Updated 2 weeks ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆107Updated 7 months ago
- Cloud Security Posture security policies☆31Updated 10 months ago
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆31Updated 9 months ago
- The Clouditor is a tool to support continuous cloud assurance. Developed by Fraunhofer AISEC.☆78Updated this week
- SBOM Move - Automate build and transfer of SBOMs across systems☆23Updated this week
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆40Updated 11 months ago
- Slack alert bot for matching Github Audit Events☆10Updated 8 months ago
- ☆56Updated 2 weeks ago
- The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.☆125Updated last week
- Threat model for Azure Storage - Library of all the attack scenarios on Azure Storage, and how to mitigate them following a risk-based ap…☆59Updated 2 years ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆71Updated 2 years ago
- kubernetes-for-soc aims to fast-track the learning curve for SOC analysts by enabling them to swiftly grasp the essential concepts and kn…☆54Updated last year
- A tool to create, transform and attest VEX metadata☆151Updated this week
- Kubernetes audit logging, when you don't control the control plane☆84Updated this week
- Curating Falco rules with MITRE ATT&CK Matrix☆82Updated last year
- Scan GitHub Actions Workflow logs for IOCs☆15Updated 2 weeks ago
- ☆56Updated last week
- OWASP Foundation Web Respository☆55Updated 2 years ago
- ☆179Updated 3 months ago
- ☆74Updated 2 months ago
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆58Updated last year
- vexctl is a tool to attest VEX impact statements☆45Updated 2 years ago
- Trivy's misconfiguration scanning engine☆218Updated 6 months ago
- A collection of cloud security icons☆192Updated 2 years ago
- Clean accounts over permissions in GCP infra at scale☆71Updated 2 years ago
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆116Updated 2 months ago
- VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities☆102Updated 9 months ago