Skip to content
View cattleguard's full-sized avatar

Block or report cattleguard

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Attack Flow helps executives, SOC managers, and defenders easily understand how attackers compose ATT&CK techniques into attacks by developing a representation of attack flows, modeling attack flow…

TypeScript 582 90 Updated Jan 14, 2025

Tools related to work with Attack Flow (https://github.com/center-for-threat-informed-defense/attack-flow)

Jupyter Notebook 44 3 Updated Jun 6, 2022

A curated list of threat modeling resources (Books, courses - free and paid, videos, tools, tutorials and workshops to practice on ) for learning Threat modeling and initial phases of security review.

Dockerfile 1,468 265 Updated Aug 2, 2024

🚨ATTENTION🚨 The VERIS mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here as an archive.

Python 72 6 Updated Apr 3, 2024

StreamAlert is a serverless, realtime data analysis framework which empowers you to ingest, analyze, and alert on data from any environment, using datasources and alerting logic you define.

Python 2,860 335 Updated Oct 23, 2023

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 60,677 24,134 Updated Feb 12, 2025

Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki

202 34 Updated Oct 31, 2024

Multi-Cloud Security Auditing Tool

Python 6,922 1,074 Updated Nov 19, 2024

Enumerate the permissions associated with AWS credential set

Python 1,128 179 Updated Feb 5, 2024

A tool for adding new lines to files, skipping duplicates

Go 1,454 163 Updated Jan 12, 2024

The FLARE team's open-source tool to identify capabilities in executable files.

Python 5,076 574 Updated Feb 11, 2025

Analyze HTTP requests to minimize risks of HTTP Desync attacks (precursor for HTTP request smuggling/splitting).

Rust 262 19 Updated Dec 31, 2020

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Go 6,565 598 Updated Feb 12, 2025

Simple Sprite Editor for NES Games

JavaScript 32 7 Updated Jan 3, 2024
Assembly 32 4 Updated Mar 17, 2017

A Nmap XSL implementation with Bootstrap.

HTML 940 179 Updated Nov 13, 2023

This is a collection of writeups, cheatsheets, videos, books related to SSRF in one single location

1,239 232 Updated Jan 24, 2021

Password-protect URLs using AES in the browser; create hidden bookmarks without a browser extension

JavaScript 880 165 Updated Jan 25, 2025

Cloud cost estimates for Terraform in pull requests💰📉 Shift FinOps Left!

Go 11,241 581 Updated Feb 12, 2025

CloudTracker helps you find over-privileged IAM users and roles by comparing CloudTrail logs with current IAM policies.

Python 892 111 Updated Dec 17, 2021

materials we hand out

Python 142 53 Updated Oct 4, 2024

In this workshop, you will learn techniques to secure a serverless application built with AWS Lambda, Amazon API Gateway and RDS Aurora. We will cover AWS services and features you can leverage to …

JavaScript 533 185 Updated Nov 4, 2024

A collection of hacks and one-off scripts

Go 2,186 650 Updated Sep 3, 2023

Create agents that monitor and act on your behalf. Your agents are standing by!

Ruby 44,824 3,871 Updated Feb 11, 2025

DEPRECATED - A prototype SSH configuration and policy scanner (Blog: https://mozilla.github.io/ssh_scan/)

Ruby 790 103 Updated Jan 23, 2022

nodejsscan is a static security code scanner for Node.js applications.

CSS 2,429 333 Updated Jan 2, 2025

Urls status code & content length checker

Go 148 39 Updated Oct 1, 2020
JavaScript 27 16 Updated Jul 2, 2020

Slim(toolkit): Don't change anything in your container image and minify it by up to 30x (and for compiled languages even more) making it secure too! (free and open source)

Go 20,926 760 Updated Jan 30, 2025

Simple example using mutual TLS authentication with a Golang server

Shell 158 63 Updated Jul 10, 2020
Next