testifysec / solarsploit
Red team tool that emulates the SolarWinds CI compromise attack vector.
☆22Updated 11 months ago
Alternatives and similar repositories for solarsploit:
Users that are interested in solarsploit are comparing it to the libraries listed below
- An query language and interactive tooling to work with SBOM data.☆14Updated 4 months ago
- go-ima is a tool that checks if a file has been tampered with. It is useful in ensuring integrity in CI systems☆13Updated last year
- TACOS framework structural details☆20Updated last year
- Adversary emulation for EDR/SIEM testing (macOS/Linux)☆40Updated last year
- vexctl is a tool to attest VEX impact statements☆44Updated last year
- ☆25Updated 9 months ago
- Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster☆36Updated 3 years ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated this week
- egrets monitors egress☆46Updated 4 years ago
- Linux agent used to submit realtime SBOMs and dependency usage information to EdgeBit☆14Updated 3 weeks ago
- ☆53Updated this week
- K8s API Honeypot with Active Defense Capabilities☆40Updated last year
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆54Updated 2 months ago
- Go implementation of witness☆30Updated this week
- Automated testing, generation & manipulation of #osquery packs☆72Updated 4 months ago
- ☆62Updated 3 weeks ago
- ☆11Updated 3 weeks ago
- Analyse binaries for missing security features, information disclosure and more...☆86Updated last year
- An SBOM query language and associated utilities☆54Updated last year
- ☆20Updated 9 months ago
- Kubernetes Unhinged Shell 😎☆45Updated 2 years ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆60Updated this week
- ☆24Updated last year
- Sigstore user stories☆29Updated last year
- a tool to audit the istio service mesh☆174Updated 3 years ago
- Home of code related to security of network systems.☆23Updated 3 weeks ago
- Going Florida on container keyring masks. A tool to demonstrate the ineffectivity containers have on isolating Linux Kernel keyrings.☆43Updated last year
- Detect compiler names and versions from ELF files☆25Updated 5 months ago
- Manage a directory of binaries without a package manager☆25Updated this week
- Simple tool that allows you to detect imposter commits in GitHub Actions workflows.☆23Updated 2 months ago