devsecops topic

List devsecops repositories

njsscan

355
Stars
76
Forks
Watchers

njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.

chain-bench

704
Stars
61
Forks
Watchers

An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchmark.

cve-bin-tool

1.2k
Stars
449
Forks
Watchers

The CVE Binary Tool helps you determine if your system includes known vulnerabilities. You can scan binaries for over 200 common, vulnerable components (openssl, libpng, libxml2, expat and others), or...

ChopChop

657
Stars
77
Forks
Watchers

ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.

falconpy

454
Stars
152
Forks
454
Watchers

The CrowdStrike Falcon SDK for Python

my-links

376
Stars
122
Forks
Watchers

Knowledge seeks no man

awesome-threat-modelling

1.3k
Stars
233
Forks
Watchers

A curated list of threat modeling resources (Books, courses - free and paid, videos, tools, tutorials and workshops to practice on ) for learning Threat modeling and initial phases of security review.

ElectricEye

933
Stars
123
Forks
Watchers

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting 100s of services and evaluations to harden your CSP &...

qodana-action

250
Stars
33
Forks
Watchers

⚙️ Scan your Go, Java, Kotlin, PHP, Python, JavaScript, TypeScript, .NET projects at GitHub with Qodana. This repository contains Qodana for Azure, GitHub, CircleCI and Gradle

kubernetes-security-checklist

459
Stars
89
Forks
Watchers

Kubernetes Security Checklist and Requirements - All in One (authentication, authorization, logging, secrets, configuration, network, workloads, dockerfile)