Skip to content

Latest commit

 

History

History
147 lines (125 loc) · 10.1 KB

security-tools.md

File metadata and controls

147 lines (125 loc) · 10.1 KB

Bookmarks tagged [security-tools]

https://blog.wescale.fr/2021/06/22/securisation-du-cycle-de-developpement-applicatif-analyse-des-dep...

La sécurité applicative est un enjeu qui doit être pris en compte dès la conception du projet, chaperonné tout au long du cycle de développement.


https://github.com/Atomicorp/ossec-docker

Official OSSEC docker container. Contribute to Atomicorp/ossec-docker development by creating an account on GitHub.


https://github.com/Atomicorp/openvas-docker

A docker container for openvas. Contribute to Atomicorp/openvas-docker development by creating an account on GitHub.


https://github.com/Atomicorp/gvm

Greenbone Vulnerability Manager / Openvas packaging project - Atomicorp/gvm


https://threatdragon.org/

Threat Dragon is a free, open-source threat modeling tool from OWASP. It can be used as a standalone desktop app for Windows and MacOS (Linux coming soon) or as a web application. The desktop app is g...


https://falco.org/

Falco, the cloud-native runtime security project, is the de facto Kubernetes threat detection engine


https://gchq.github.io/CyberChef/

The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis


https://csp-evaluator.withgoogle.com/

CSP Evaluator allows developers and security experts to check if a Content Security Policy (CSP) serves as a strong mitigation against cross-site scripting attacks. It assists with the process of revi...


https://beefproject.com/

BeEF is short for The Browser Exploitation Framework. It is a penetration testing tool that focuses on the web browser.


https://gf.dev/hsts-test

Check if your site is defending from cookie hijacking & protocol downgrade attack


https://cwe.mitre.org/index.html

CWE™ is a community-developed list of software and hardware weakness types. It serves as a common language, a measuring stick for security tools, and as a baseline for weakness identification, mitigat...


https://www.zaproxy.org/

The OWASP Zed Attack Proxy (ZAP) is one of the world’s most popular free security tools and is actively maintained by a dedicated international team of volunteers. It can help you automatically find s...


https://mitmproxy.org/

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.


https://www.softwaresecured.com/what-do-sast-dast-iast-and-rasp-mean-to-developers/

It’s estimated that 90 percent of security incidents result from attackers exploiting known software bugs. Needless to say, squashing those bugs in the development phase of software could reduce the i...


https://github.com/arvancloud/libinjection-rs

Rust bindings for libinjection [](https://travis-ci.org/arvancloud/libinjec...


https://github.com/kpcyrd/badtouch

A scriptable network authentication cracker


https://github.com/kpcyrd/rshijack

A TCP connection hijacker, rust rewrite of shijack


https://github.com/kpcyrd/sniffglue

A secure multithreaded packet sniffer


https://github.com/kpcyrd/sn0int

A semi-automatic OSINT framework and package manager


https://github.com/Gymmasssorla/anevicon

The most powerful UDP-based load generator, written in Rust


https://github.com/Gymmasssorla/finshir

A coroutines-driven Low & Slow traffic generator, written in Rust