otto-de / threatmodeling-resources
☆14Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for threatmodeling-resources
- Github action to run dependency check☆71Updated 3 months ago
- Pin designs for security related items☆37Updated 6 months ago
- OWASP Foundation Web Respository☆27Updated 2 months ago
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.☆104Updated 9 months ago
- UI für verschiedene Reifegrad-Dimensionen☆31Updated last year
- ☆102Updated 4 months ago
- 🖇️ STRIDE vs. ASVS equivalence table☆75Updated 2 months ago
- ZAP Management Scripts☆21Updated this week
- OWASP Dependency Track API client for intergration into CI/CD pipeline☆51Updated 3 months ago
- ☆79Updated this week
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆57Updated last year
- OWASP Foundation Web Respository☆79Updated 2 months ago
- SonarQube plugin for identifying hardcoded secrets, such as passwords, API keys, AWS credentials, etc..☆100Updated 11 months ago
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆32Updated 3 weeks ago
- ☆61Updated last year
- Automate vulnerability triage which prioritizes remediation over discovery☆14Updated this week
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆55Updated 4 months ago
- Compares and analyzes GCP IAM roles.☆76Updated 5 months ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆169Updated 8 months ago
- DefectDojo Community Content☆17Updated 3 weeks ago
- PolicyGlass allows you to analyse one or more AWS policies' effective permissions in aggregate, by restating them in the form of PolicySh…☆58Updated 2 years ago
- Publishes BOMs to Dependency-Track from GitHub Actions☆47Updated last month
- Github action for linting AWS IAM policy documents☆36Updated last year
- ☆47Updated last year
- A tool to check the security settings of Github Organizations.☆69Updated last year
- Software Component Verification Standard (SCVS)☆134Updated 6 months ago
- ☆36Updated 3 years ago