rusakovichma / TicTaaCLinks
Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. Sugar-Free and Secure: no any external dependencies except for chart plotting are used
β68Updated 6 months ago
Alternatives and similar repositories for TicTaaC
Users that are interested in TicTaaC are comparing it to the libraries listed below
Sorting:
- A small tool to help developers understand a huge set of security requirements from appsec teamsβ47Updated 3 years ago
- ποΈ equivalence table between OWASP ASVS standard and STRIDE threat modeling methodology.β75Updated last year
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.β177Updated last month
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.β110Updated last year
- The Open Security Summit is focused on the collaboration between, Developers and Application Securityβ45Updated 6 months ago
- β114Updated 2 years ago
- A framework for understanding the capabilities of automated detection methods at identifying classes of application security vulnerabilitβ¦β32Updated last month
- β20Updated 3 years ago
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.β105Updated 2 years ago
- β62Updated 7 months ago
- A powerful tool that leverages AI to automatically generate comprehensive security documentation for your projectsβ99Updated 2 months ago
- Maturity Model Collaborative projectβ15Updated 2 years ago
- A project to visualize the software supply chainβ55Updated 2 years ago
- An experimental project using LLM technology to generate security documentation for Open Source Software (OSS) projectsβ34Updated 10 months ago
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different soβ¦β52Updated last month
- β124Updated 2 years ago
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,β¦β139Updated last year
- AI featured threat modeling and security review actionβ45Updated last year
- InfoSec OpenAI Examplesβ19Updated 2 years ago
- β87Updated 4 years ago
- OWASP Foundation Web Respositoryβ100Updated 2 weeks ago
- Fork Threat Modeling Platform - Communityβ27Updated 3 months ago
- A Risk-Based Prioritization Taxonomy for prioritizing CVEs (Common Vulnerabilities and Exposures).β82Updated last year
- GCP GOAT is the vulnerable application for learn the GCP Securityβ70Updated 7 months ago
- Presentations, training modules, and other education materials from Duo Security's Application Security team.β77Updated 4 years ago
- Threat Modeling Manifestoβ29Updated last year
- Systematic Universal Security Testing Orchestrationβ37Updated 3 years ago
- LLM Testing Findings Templatesβ75Updated last year
- OWASP Foundation Web Respositoryβ31Updated 2 months ago
- Vulnerability impact analyzer that reduces false positives in SCA tools by performing intelligent code analysis. Uses agentic AI with opeβ¦β62Updated 10 months ago