oasis-open / csaf-documentationLinks
OASIS TC Open Repository: A GitHub repository for management of non-normative information about the work of the CSAF Technical Committee, including documentation
☆21Updated this week
Alternatives and similar repositories for csaf-documentation
Users that are interested in csaf-documentation are comparing it to the libraries listed below
Sorting:
- Stakeholder-Specific Vulnerability Categorization☆164Updated this week
- OASIS CSAF TC: Supporting version control for Work Product artifacts developed by members of TC, including prose specifications and secon…☆192Updated 2 weeks ago
- Global Security Database Tools☆44Updated last year
- A place to gather and organize information about using threat modeling frameworks to deal with social conflict in online systems☆56Updated 3 months ago
- A community collection of security reviews of open source software components.☆95Updated last year
- Software Component Verification Standard (SCVS)☆150Updated 6 months ago
- CISA CSAF Security Advisories☆83Updated last week
- The purpose of the Metrics & Metadata (formerly Identifying Security Threats) working group is to enable stakeholders to have informed co…☆222Updated last year
- OWASP Foundation Threat Dragon Project Web Repository☆83Updated last week
- OASIS TC Open Repository: CSAF Parser tool for parsing and checking the syntax of the Common Vulnerability Reporting Framework (CVRF) con…☆23Updated 3 years ago
- The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools…☆164Updated this week
- OASIS TC Open Repository: GitHub Pages site for STIX and TAXII☆104Updated 3 weeks ago
- ☆67Updated 2 months ago
- ☆19Updated 2 months ago
- OASIS TC Open Repository: Validator for STIX 2.0 JSON normative requirements and best practices☆57Updated 2 months ago
- OWASP Foundation Web Respository☆31Updated 2 years ago
- OASIS Cyber Threat Intelligence (CTI) TC: A repository for commonly used STIX objects in order to avoid needless duplication. https://gi…☆96Updated 4 months ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆280Updated last week
- Vendor Security Model Contract☆98Updated 3 years ago
- CVE.ICU code.☆46Updated this week
- A dataset of software supply chain compromises. Please help us maintain it!☆130Updated 3 years ago
- ☆16Updated 2 years ago
- A Crowdsourcing Exchange for mapping various sources of security vulnerabilities, exposures, threats, and controls data☆27Updated 6 years ago
- The OpenDXL Ontology project is focused on the development of an open and interoperable cybersecurity messaging format for use with the O…☆76Updated 4 years ago
- OASIS OpenC2 TC: Repository for submitting and reviewing OpenC2 use cases relevant to the work of the OpenC2 Language Subcommittee (LSC)☆28Updated 3 years ago
- threatspec - continuous threat modeling, through code☆368Updated 4 years ago
- OWASP Threat Dragon core files☆29Updated 4 years ago
- This project consists of an open source library allowing software to connect to data repositories using STIX Patterning, and return resul…☆247Updated 3 weeks ago
- A repository with examples of CycloneDX BOMs (SBOM, SaaSBOM, OBOM, VEX, etc)☆203Updated 5 months ago
- ☆18Updated 2 months ago