otto-de / threatmodeling-resources
☆14Updated 3 years ago
Alternatives and similar repositories for threatmodeling-resources:
Users that are interested in threatmodeling-resources are comparing it to the libraries listed below
- Pin designs for security related items☆37Updated 11 months ago
- ☆33Updated 3 years ago
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.☆107Updated last year
- Software Component Verification Standard (SCVS)☆143Updated 3 weeks ago
- Github action to run dependency check☆77Updated 8 months ago
- ☆63Updated last year
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆171Updated 5 months ago
- Container Security Verification Standard☆58Updated 5 years ago
- Github action for linting AWS IAM policy documents☆38Updated 2 years ago
- A tool to check the security settings of Github Organizations.☆71Updated last year
- Publishes BOMs to Dependency-Track from GitHub Actions☆53Updated 6 months ago
- SBOM Grep - search through SBOMs☆25Updated 2 months ago
- OWASP Foundation Web Respository☆28Updated 8 months ago
- Discover vulnerabilities and container image misconfiguration in production environments.☆55Updated last month
- 🖇️ STRIDE vs. ASVS equivalence table☆76Updated 8 months ago
- UI für verschiedene Reifegrad-Dimensionen☆31Updated 2 years ago
- Automate vulnerability triage which prioritizes remediation over discovery☆16Updated this week
- ☆87Updated 3 years ago
- ☆114Updated last week
- PolicyGlass allows you to analyse one or more AWS policies' effective permissions in aggregate, by restating them in the form of PolicySh…☆59Updated 3 years ago
- Project intended to make Attack Maps part of software development by reducing the time it takes to complete them.☆48Updated 8 years ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆62Updated 10 months ago
- ☆35Updated 3 years ago
- OWASP Foundation Web Respository☆82Updated 3 months ago
- ☆116Updated last month
- Enrich SBOMs with data from third party services☆168Updated 3 weeks ago
- Systematic Universal Security Testing Orchestration☆37Updated 3 years ago
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.☆97Updated last year
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Updated 2 years ago
- OWASP Cloud Security - Enabling conversations through threat and control stories☆180Updated 6 years ago