Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
翻译 - Bridgecrew使用Checkov防止在Terraform,Cloudformation,Kubernetes,无服务器框架和其他基础架构代码语言的构建期间对云进行错误配置。
Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.
翻译 - 在配置云原生基础架构之前,将整个基础架构中的合规性和安全违规行为作为代码进行检测,以降低风险。
Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, build your taylor-made EASM tool, colle...
Fast and powerful SSL/TLS scanning library.
翻译 - 快速强大的SSL / TLS服务器扫描库。
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
翻译 - 扫描给定的进程。识别并转储各种潜在的恶意植入物(替换/注入的PE,shellcode,hook,内存中的修补程序)。
Using a pre-commit hook, Talisman validates the outgoing changeset for things that look suspicious — such as tokens, passwords, and private keys.
iOS & OSX Bluetooth library for RxSwift
PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform
Simple and extensible plugin to track task times in your Gradle Project.
Show uncommitted, untracked and unpushed changes for multiple Git repos
#安全#Another web vulnerabilities scanner, this extension works on Chrome and Opera
Scans your AWS cloud resources and generates reports. Check out free hosted version:
A PHP version scanner for reporting possible vulnerabilities
Automatic Service Enumeration Script
Sqreen's Application Security Management for the Go language
Automate the scanning and enumeration of machines externally while maintaining complete control over scans shot to the target. Comfortable GUI-ish platform. Great for OSCP/HTB type Machines as well as...
R3C0Nizer is the first ever CLI based menu-driven web application B-Tier recon framework.