synacktiv / action-octoscan
📦 A GitHub Action that performs a security scan of your GitHub Actions.
☆26Updated 5 months ago
Alternatives and similar repositories for action-octoscan:
Users that are interested in action-octoscan are comparing it to the libraries listed below
- ☆60Updated 3 months ago
- boostsecurityio/lotp☆116Updated 2 weeks ago
- Octoscan is a static vulnerability scanner for GitHub action workflows.☆200Updated 2 months ago
- Outil de sécurité des architectures kubernetes avancées☆50Updated 4 months ago
- GitHub Actions Cache Native Malware - for Educational and Research Purposes only.☆58Updated 3 weeks ago
- GeoWordlists is a tool to generate wordlists of passwords containing cities at a defined distance around the client city.☆147Updated last month
- ☆89Updated 2 weeks ago
- VM Lab for security☆9Updated last year
- A python module to explore the object tree to extract paths to interesting objects in memory.☆91Updated last month
- A curated list of argument injection vectors☆40Updated 2 months ago
- Azure mindmap for penetration tests☆179Updated last year
- HASH (HTTP Agnostic Software Honeypot)☆137Updated 10 months ago
- CaptainCredz is a modular and discreet password-spraying tool.☆100Updated last month
- DEbian Cve REproducer Tool☆22Updated last year
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆124Updated 11 months ago
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆108Updated 2 months ago
- Burp Suite extension for testing Passkey systems.☆65Updated last month
- ☆33Updated 3 months ago
- Unicode Security Toolkit☆34Updated 5 months ago
- MailFail identifies and provides commands to exploit a large number of email-related misconfigurations for the current domain and subdoma…☆51Updated 3 weeks ago
- Go setter/getter for property ms-Mcs-AdmPwd used by LAPS.☆14Updated 11 months ago
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆114Updated last year
- gubble is a tool designed to audit Google Workspace group settings. It analyzes settings such as who can join, view membership, post mess…☆47Updated 2 months ago
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobs☆36Updated 6 months ago
- Signature based honeypot detector tool written in Golang☆89Updated this week
- A tool for quickly evaluating IAM permissions in AWS.☆57Updated last year
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆273Updated last month
- Access All Networks: an offensive multitool against 802.1X☆15Updated 2 months ago
- ☆40Updated 7 months ago
- SOAPI - The OpenAPI Documentation Scanner☆36Updated last month