Stars
Open Source Wealth Management Software. Angular + NestJS + Prisma + Nx + TypeScript 🤍
Vulnerable by Design AWS Cloud Development Kit (CDK) Infrastructure
IAMbic is Version-Control for IAM. It centralizes and simplifies cloud access and permissions. It maintains an eventually consistent, human-readable, bi-directional representation of IAM in Git.
🎨 Diagram as Code for prototyping cloud system architectures
kubeaudit helps you audit your Kubernetes clusters against common security controls
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernet…
List of all the Publicly disclosed vulnerabilities of Public Cloud Provider like Amazon Web Services (AWS), Microsoft Azure, Google Cloud, Oracle Cloud, IBM Cloud etc
This repository provides a working, deployable, open source-based, serverless service blueprint with an AWS Lambda function and AWS CDK Python code with all the best practices and a complete CI/CD …
Generate a score for your sbom to understand if it will actually be useful.
Container runtimes on macOS (and Linux) with minimal setup
Rules Registry for Compliance Frameworks
ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting 100s of services and evaluations to harden your CSP…
The Amazon Elastic Kubernetes Service (EKS) Creation Engine (ECE) is a Python command-line program created by the Lightspin Office of the CISO to facilitate the creation and enablement of secure EK…
Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect
Empowering everyone to build reliable and efficient software.
vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.
App Platform for Linode Kubernetes Engine
Karpenter is a Kubernetes Node Autoscaler built for flexibility, performance, and simplicity.
Deliberately vulnerable AWS resources for security assessment demos
LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the Luna…
SyntheticSun is a defense-in-depth security automation and monitoring framework which utilizes threat intelligence, machine learning, managed AWS security services and, serverless technologies to c…