A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain
☆99Feb 11, 2025Updated last year
Alternatives and similar repositories for OSCAR
Users that are interested in OSCAR are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ReviveIT (revit) is a proof of concept file recovery tool (carver)☆13Dec 3, 2020Updated 5 years ago
- Collating an overview of the open source software supply chain landscape -- and synthesizing that survey in a hopefully-useful way.☆35Apr 4, 2023Updated 3 years ago
- Hands-on Exercises for "Dangerous attack paths: Modern Development Environment Security - Devices and CI/CD pipelines"☆45Sep 19, 2022Updated 4 years ago
- Software Supply Chain Attribute Integrity (SCAI) Demos and CLI tools☆19Sep 2, 2026Updated last month
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆151Jan 28, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆11Apr 23, 2020Updated 6 years ago
- ☆28Aug 6, 2020Updated 6 years ago
- DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.☆41May 22, 2026Updated 4 months ago
- Busted. With duct tape, spit and tears. Brought to you by beer.☆12Nov 4, 2021Updated 4 years ago
- online decision-making platform☆14Sep 10, 2023Updated 3 years ago
- Extract useful semantic from CVE descriptions usinig NLP☆25Jan 4, 2023Updated 3 years ago
- A tool to generate a SBOM (Software Bill of Materials) for an installed Python module☆40Jun 4, 2026Updated 4 months ago
- A wrapper script for https://sploitus.com to scrape query results for tools and exploits☆14Mar 3, 2019Updated 7 years ago
- Empty npm package to «uninstall» unused transitive dependencies☆13Sep 9, 2023Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- SLSA Proposals☆13Jan 29, 2024Updated 2 years ago
- Send GKE audit events to falco☆12Jan 8, 2023Updated 3 years ago
- Windows Event Log Knowledge Base☆36Sep 27, 2026Updated 2 weeks ago
- A project to visualize the software supply chain☆58Sep 9, 2023Updated 3 years ago
- A GitHub Action for checking broken links in Markdown files☆20Updated this week
- A standard API specification for exchanging supply chain artifacts and intelligence☆117Updated this week
- Sharing software supply chain security open source projects☆54Dec 19, 2022Updated 3 years ago
- Software Supply Chain Security Platform☆422Updated this week
- Rust implementation of SafePOSIX☆13May 13, 2025Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Supply-chain Levels for Software Artifacts☆1,940Updated this week
- A collection of packages for using security advisories from osv.dev in Node.js.☆23Updated this week
- Automate vulnerability triage which prioritizes remediation over discovery☆25Oct 3, 2026Updated last week
- A curated list of SBOM (Software Bill Of Materials) related tools, frameworks, blogs, podcasts, and articles☆600May 27, 2026Updated 4 months ago
- 💧 SAMPLE: WebSocket Sample Application☆10May 21, 2026Updated 4 months ago
- Analysis Correlation Engine☆26Sep 8, 2019Updated 7 years ago
- Manager of 14 third-party sources comprising approximately 4,000 Semgrep rules 🗂☆120Dec 24, 2025Updated 9 months ago
- GUAC aggregates software security metadata into a high fidelity graph database.☆1,553Updated this week
- Toy browser on single process / thread☆33Aug 9, 2022Updated 4 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Microsoft Compound File Binary (CFB) file format Python IO☆15Apr 2, 2026Updated 6 months ago
- PDF Parser is a command line tool and go library for analyzing PDF files.☆14Jan 25, 2024Updated 2 years ago
- Scans SBOMs for vulnerabilities with Grype☆88Updated this week
- Enrich SBOMs with data from third party services☆240Sep 21, 2026Updated 2 weeks ago
- Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks☆34Apr 22, 2025Updated last year
- A utility to force query DNS over DoH off of CloudFlare API when DNS block is in place☆10Aug 26, 2018Updated 8 years ago
- Admin Submission API allows submission of URLs, mail messages, file mail messages and files to Microsoft to re-scan and get newest verdic…☆10Aug 6, 2021Updated 5 years ago