testifysec / solarsploitLinks
Red team tool that emulates the SolarWinds CI compromise attack vector.
☆24Updated last year
Alternatives and similar repositories for solarsploit
Users that are interested in solarsploit are comparing it to the libraries listed below
Sorting:
- go-ima is a tool that checks if a file has been tampered with. It is useful in ensuring integrity in CI systems☆13Updated last year
- ☆55Updated last week
- An query language and interactive tooling to work with SBOM data.☆14Updated 9 months ago
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆104Updated last year
- K8s API Honeypot with Active Defense Capabilities☆40Updated last year
- ☆42Updated 2 months ago
- ☆21Updated 2 months ago
- vexctl is a tool to attest VEX impact statements☆44Updated 2 years ago
- Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster☆36Updated 3 years ago
- TACOS framework structural details☆20Updated last month
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated last month
- Automated testing, generation & manipulation of #osquery packs☆73Updated 8 months ago
- Dynamic Outbound Firewall Authorizer☆22Updated 3 years ago
- Adversary emulation for EDR/SIEM testing (macOS/Linux)☆47Updated last year
- Go implementation of witness☆37Updated last week
- ☆24Updated last year
- a tool to audit the istio service mesh☆173Updated 3 years ago
- Go module to generate and transform VEX documents☆43Updated 3 weeks ago
- DNS at ludicrous speed for Go, powered by XDP sockets. [EXPERIMENTAL]☆11Updated last week
- Integrates Spiffe and Vault to have secretless authentication☆90Updated last week
- Inspect SSL/TLS traffic using eBPF☆19Updated 8 months ago
- A lightweight CLI tool that finds system calls being called inside golang applications.☆31Updated 3 years ago
- Utility methods for gRPC.☆11Updated this week
- This is a POC repository showing how a Kubernetes Admission Controller can be made irrelevant when verifying container image signatures☆12Updated 2 years ago
- Common Vulnerability Scoring System (CVSS) made safe and highly efficient☆43Updated last week
- Kubernetes offensive framework built in eBPF☆37Updated 2 years ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆40Updated last year
- Kubernetes Unhinged Shell 😎☆46Updated 2 years ago
- A repository to store Rad Fingerprinting data.☆24Updated 11 months ago
- Sigstore user stories☆30Updated last year