octodemo / advanced-security-terraform
Vulnerable Terraform Projects - Fork of https://github.com/bridgecrewio/terragoat
☆13Updated 9 months ago
Alternatives and similar repositories for advanced-security-terraform:
Users that are interested in advanced-security-terraform are comparing it to the libraries listed below
- OWASP Foundation Web Respository☆54Updated last year
- Count distinct contributor of Snyk watched repos across several SCM☆32Updated 7 months ago
- Manage a uniform team of security managers for every organization in your enterprise☆17Updated 6 months ago
- A full insecure kubernetes application for testing security tools☆66Updated this week
- An AWS IAM policy statement parser and query tool.☆173Updated last year
- OWASP Foundation Web Respository☆81Updated 3 weeks ago
- Examples of Custom Secret Scanning Patterns☆155Updated 7 months ago
- https://breaches.cloud☆38Updated 4 months ago
- The OWASP DevSecOps Guideline explains how we can implement a secure pipeline and use best practices and introduce tools that we can use …☆62Updated 8 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆60Updated last year
- GitHub Action to generate GitHub Advanced Security (GHAS) metrics report☆18Updated 2 weeks ago
- A GitHub action that scans the Azure resources for policy violations.☆57Updated 6 months ago
- ☆70Updated 3 weeks ago
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆59Updated last year
- ThreatModel for Azure Storage - Library of all the attack scenarios on Azure Storage, and how to mitigate them following a risk-based app…☆57Updated last year
- Rapidly apply hundreds of security controls in Azure☆184Updated last year
- GitHub action to scan container images with Palo Alto Networks' Prisma Cloud☆54Updated 2 weeks ago
- ☆112Updated last month
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆36Updated 5 months ago
- A tool for preventing the installation of malicious PyPI and npm packages☆124Updated this week
- Identify all permitted data paths originating from the Internet to Network Interfaces within AWS Accounts across the entire AWS Organizat…☆37Updated last year
- Generates runbooks for GuardDuty findings☆35Updated 7 months ago
- CodeQL Extractor, Library, and Queries for Infrastructure as Code☆46Updated this week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆44Updated last year
- A repo for testing and demonstration purposes.☆30Updated this week
- ☆163Updated 5 months ago
- A collection of DoD and Federal Government Cloud Computing Resources☆48Updated 3 years ago
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.☆97Updated last year
- GitHub Advanced Security Policy as Code☆79Updated this week
- An Action to wrap creating an SBOM via REST API☆15Updated 5 months ago