trufflesecurity / how-to-rotate
An open-source collection of API key rotation tutorials.
☆63Updated 2 months ago
Alternatives and similar repositories for how-to-rotate:
Users that are interested in how-to-rotate are comparing it to the libraries listed below
- A tool for preventing the installation of malicious PyPI and npm packages☆124Updated this week
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆82Updated last week
- HashiCorp-relevant rules for the Semgrep code analysis tool☆39Updated last year
- ☆163Updated 5 months ago
- boostsecurityio/poutine☆252Updated this week
- Protect against subdomain takeover☆92Updated 8 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆60Updated last year
- ☆91Updated this week
- boostsecurityio/lotp☆112Updated this week
- The security workflow engine!☆95Updated this week
- AWS honey token manager☆87Updated 6 months ago
- A full insecure kubernetes application for testing security tools☆66Updated this week
- ☆111Updated last month
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆38Updated 5 months ago
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆30Updated 4 months ago
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆52Updated 3 weeks ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆171Updated 2 months ago
- RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and…☆146Updated 2 months ago
- Tool for obfuscating and deobfuscating data.☆67Updated 11 months ago
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆113Updated last year
- A tool to uncover undocumented APIs from the AWS Console.☆95Updated 3 months ago
- Runtime Security Solution for your CI/CD Pipeline☆95Updated this week
- Semgrep-based Policy Controller for Kubernetes☆46Updated this week
- YouShallNotPass brings an added level of execution security to mission-critical CI/CD Systems.☆36Updated last year
- ☆174Updated 2 months ago
- A tool to check the security settings of Github Organizations.☆71Updated last year
- Static code analyser for backdoors and malicious code in git repos using OpenAI compatible LLM APIs☆72Updated 11 months ago
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆137Updated last month