w3c / webappsec-dbscLinks
Device Bound Session Credentials: A Protocol for Protecting From Cookie Theft
☆426Updated 3 weeks ago
Alternatives and similar repositories for webappsec-dbsc
Users that are interested in webappsec-dbsc are comparing it to the libraries listed below
Sorting:
- This repo contains a community sourced list of AAGUIDs for passkey credential managers to help with naming in end user management UIs☆322Updated last week
- ☆221Updated last year
- OSV-SCALIBR: A library for Software Composition Analysis☆545Updated this week
- Minimum Viable Secure Product mvsp.dev☆204Updated last year
- Tool to find common vulnerabilities in cryptographic public keys☆306Updated 3 weeks ago
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆315Updated 2 months ago
- A framework for verifying PKI structures☆120Updated 3 weeks ago
- #supply #chain #attack #detection☆633Updated last week
- Asynchronous delegated key generation without shared secrets (DRAFT)☆70Updated 2 years ago
- Backend for HTTP Observatory on MDN☆99Updated this week
- blint is a Binary Linter that checks the security properties and capabilities of your executables. It can also generate a Software Bill-o…☆428Updated last month
- Home for explainer documents originated by the Microsoft Identity Standards team☆17Updated last year
- Repository for the CA/Browser Forum Server Certificate Chartered Working Group☆216Updated last week
- Fingerprint-aware TLS reverse proxy. Use Finch to outsmart bad traffic—collect client fingerprints (JA3, JA4 +QUIC, JA4H, HTTP/2) and act…☆284Updated 2 weeks ago
- Okta Verify and Okta FastPass Abuse Tool☆338Updated last year
- Auditing for TLS certificates (Go code)☆1,078Updated 3 weeks ago
- GitHub Attack Toolkit - Extreme Edition - A static analysis and exploit toolkit for GitHub Actions.☆470Updated last week
- Too many secrets (2MS) helps people protect their secrets on any file or on systems like CMS, chats and git☆137Updated last week
- PKI Meta-Linter☆112Updated last week
- A toolset for dealing with Cryptography Bill of Materials (CBOM)☆61Updated last week
- Securing open-source package ecosystems by originating, validating, and augmenting build attestations.☆673Updated last week
- boostsecurityio/poutine☆350Updated 3 weeks ago
- Certificate Transparency log monitor☆420Updated last month
- The source code for webauthn.io, a demonstration of WebAuthn.☆725Updated last week
- Supply-Chain Firewall (SCFW) is a tool for preventing the installation of malicious npm and PyPI packages☆210Updated this week
- Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, an…☆930Updated last week
- A security layer for Git repositories☆563Updated last week
- ☆131Updated last week
- Focused malicious code detection ruleset, with a high protection-to-noise ratio☆138Updated 10 months ago
- GitHub Actions Pipeline Enumeration and Attack Tool☆722Updated 3 months ago