devsecops topic
SecTools
List of tools for SecDevOps, vulnerability analysis, network scanning
ryzesca
RyzeSCA 是M-SEC社区一款强化 DevSecOps 的软件成分分析工具,能在软件开发过程中分析和管理开源组件的安全风险。
SecurityChecklists
The SaaS CTO Security Checklist Redux, The DevOps Security Checklist, and The Personal Infosec & Security Checklist
DevSecOps
开发和安全和运营:DevSecOps-Software development (Dev) and Security (Sec) and IT operations (Ops).
powerpipe
Powerpipe: Dashboards for DevOps. Visualize cloud configurations. Assess security posture against a massive library of benchmarks. Build custom dashboards with code.
sbomgr
SBOM Grep - search through SBOMs
DevSecOps-Assessment-Framework
DevSecOps Assessment Framework
awesome-product-security
📚A curated list of product security resources.
bulwark
Automated security decision making under uncertainty