Repositories
flipkart-incubator/Astra
Automated Security Testing For REST API's
score
goodwithtech/dockle
Container Image Linter for Security, Helping build the Best-Practice Docker Image, Easy to start
score
google/osv.dev
Open source vulnerability DB and triage service.
score
outflanknl/RedELK
Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.
score
Netflix/consoleme
A Central Control Plane for AWS Permissions and Access
score
Checkmarx/kics
Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.
score
tj-actions/changed-files
:octocat: Github action to retrieve all (added, copied, modified, deleted, renamed, type changed, unmerged, unknown) files and directories.
score
cisagov/RedEye
RedEye is a visual analytic tool supporting Red & Blue Team operations
score
x90skysn3k/brutespray
Fast, multi-protocol credential brute-forcer. Parses Nmap, Nessus, and Nexpose output to automatically test default and custom credentials across 30+ protocols.
score
danieldurnea/FBI-tools
🕵️ OSINT Tools for gathering information and actions forensics 🕵️
score
ajinabraham/nodejsscan
nodejsscan is a static security code scanner for Node.js applications.
score
4ndersonLin/awesome-cloud-security
🛡️ Awesome Cloud Security Resources ⚔️
score
bridgecrewio/terragoat
TerraGoat is Bridgecrew's "Vulnerable by Design" Terraform repository. TerraGoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.
score
Lifka/hacking-resources
Hacking resources and cheat sheets. References, tools, scripts, tutorials, and other resources that help offensive and defensive security professionals.
score
ContainerSSH/ContainerSSH
ContainerSSH: Launch containers on demand
score
BishopFox/cloudfox
Automating situational awareness for cloud penetration tests.
score
DataDog/stratus-red-team
:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
score
Bearer/bearer
Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
score
Idov31/Nidhogg
Windows rootkit for Intel x64 with 25+ features, demonstrating rootkit techniques compatible with all Windows 10 and Windows 11 versions.
score
center-for-threat-informed-defense/adversary_emulation_library
An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.
score