testifysec / solarsploit
Red team tool that emulates the SolarWinds CI compromise attack vector.
☆22Updated 10 months ago
Alternatives and similar repositories for solarsploit:
Users that are interested in solarsploit are comparing it to the libraries listed below
- Adversary emulation for EDR/SIEM testing (macOS/Linux)☆39Updated 11 months ago
- go-ima is a tool that checks if a file has been tampered with. It is useful in ensuring integrity in CI systems☆13Updated last year
- K8s API Honeypot with Active Defense Capabilities☆40Updated last year
- Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster☆36Updated 2 years ago
- ☆24Updated 8 months ago
- ☆35Updated this week
- egrets monitors egress☆46Updated 4 years ago
- ☆51Updated 3 weeks ago
- A repository to store Rad Fingerprinting data.☆23Updated 5 months ago
- An query language and interactive tooling to work with SBOM data.☆14Updated 3 months ago
- Inspect SSL/TLS traffic using eBPF☆16Updated 3 months ago
- vexctl is a tool to attest VEX impact statements☆44Updated last year
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆54Updated last month
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆22Updated last week
- ☆20Updated 8 months ago
- a tool to audit the istio service mesh☆173Updated 3 years ago
- Kubernetes Unhinged Shell 😎☆45Updated 2 years ago
- Dynamic Outbound Firewall Authorizer☆22Updated 2 years ago
- TACOS framework structural details☆20Updated last year
- efficient linux security monitoring☆25Updated 6 years ago
- Go implementation of witness☆28Updated this week
- ☆11Updated last month
- ☆29Updated 3 years ago
- Manage a directory of binaries without a package manager☆22Updated 6 months ago
- Simple tool that allows you to detect imposter commits in GitHub Actions workflows.☆23Updated last month
- Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks☆31Updated last year
- ☆56Updated 2 years ago
- This is a POC repository showing how a Kubernetes Admission Controller can be made irrelevant when verifying container image signatures☆12Updated 2 years ago
- The Jolly Executioner - a simple command execution proxy☆16Updated 7 months ago
- 🚰 Static taint analysis for Go programs.☆59Updated 5 months ago