All Projects → intercept → Similar Projects or Alternatives

1100 Open source projects that are alternatives of or similar to intercept

Checkov
Prevent cloud misconfigurations during build-time for Terraform, Cloudformation, Kubernetes, Serverless framework and other infrastructure-as-code-languages with Checkov by Bridgecrew.
Stars: ✭ 3,572 (+6514.81%)
Tfsec
Security scanner for your Terraform code
Stars: ✭ 3,622 (+6607.41%)
Nodejsscan
nodejsscan is a static security code scanner for Node.js applications.
Stars: ✭ 1,874 (+3370.37%)
Mutual labels:  static-analysis, devsecops, sast
Windows Secure Host Baseline
Configuration guidance for implementing the Windows 10 and Windows Server 2016 DoD Secure Host Baseline settings. #nsacyber
Stars: ✭ 1,288 (+2285.19%)
Mutual labels:  auditing, audit, compliance
Terraform Security Scan
Run a security scan on your terraform with the very nice https://github.com/liamg/tfsec
Stars: ✭ 64 (+18.52%)
Mutual labels:  scanner, static-analysis, compliance
Audit-Test-Automation
The Audit Test Automation Package gives you the ability to get an overview about the compliance status of several systems. You can easily create HTML-reports and have a transparent overview over compliance and non-compliance of explicit setttings and configurations in comparison to industry standards and hardening guides.
Stars: ✭ 37 (-31.48%)
Mutual labels:  audit, compliance
qodana-action
⚙️ Scan your Java, Kotlin, PHP, Python, JavaScript, TypeScript projects at GitHub with Qodana
Stars: ✭ 112 (+107.41%)
Mutual labels:  static-analysis, devsecops
Semgrep
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
Stars: ✭ 5,668 (+10396.3%)
Mutual labels:  static-analysis, sast
Sbt Dependency Check
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs). 🌈
Stars: ✭ 187 (+246.3%)
Mutual labels:  static-analysis, devsecops
Vulny Code Static Analysis
Python script to detect vulnerabilities inside PHP source code using static analysis, based on regex
Stars: ✭ 207 (+283.33%)
Mutual labels:  static-analysis, audit
Security Tools
Collection of small security tools, mostly in Bash and Python. CTFs, Bug Bounty and other stuff.
Stars: ✭ 509 (+842.59%)
Mutual labels:  scanner, static-analysis
prancer-compliance-test
This repository includes cloud security policies for IaC and live resources.
Stars: ✭ 32 (-40.74%)
Mutual labels:  policy, devsecops
Opa
An open source, general-purpose policy engine.
Stars: ✭ 5,939 (+10898.15%)
Mutual labels:  policy, compliance
Speedle
Speedle is an open source project for access control.
Stars: ✭ 153 (+183.33%)
Mutual labels:  policy, compliance
gha-setup-scancentral-client
GitHub Action to set up Fortify ScanCentral Client
Stars: ✭ 15 (-72.22%)
Mutual labels:  static-analysis, sast
Gdpr Tracker
A crowdsourced directory tracking the compliance and security practices of cloud services and their subprocessors
Stars: ✭ 142 (+162.96%)
Mutual labels:  audit, compliance
Njsscan
njsscan is a semantic aware SAST tool that can find insecure code patterns in your Node.js applications.
Stars: ✭ 128 (+137.04%)
Mutual labels:  static-analysis, devsecops
Salus
Security scanner coordinator
Stars: ✭ 441 (+716.67%)
Mutual labels:  static-analysis, audit
Wssat
WEB SERVICE SECURITY ASSESSMENT TOOL
Stars: ✭ 360 (+566.67%)
Mutual labels:  scanner, static-analysis
Enlightn
Your performance & security consultant, an artisan command away.
Stars: ✭ 378 (+600%)
Mutual labels:  static-analysis, audit
Django Easy Audit
Yet another Django audit log app, hopefully the simplest one.
Stars: ✭ 289 (+435.19%)
Mutual labels:  auditing, audit
Rudder
Continuous Auditing & Configuration
Stars: ✭ 314 (+481.48%)
Mutual labels:  auditing, compliance
Inspec Gcp Cis Benchmark
GCP CIS 1.1.0 Benchmark InSpec Profile
Stars: ✭ 69 (+27.78%)
Mutual labels:  auditing, compliance
Laravel Auditing
Record the change log from models in Laravel
Stars: ✭ 2,210 (+3992.59%)
Mutual labels:  auditing, audit
policy-server
Webhook server that evaluates WebAssembly policies to validate Kubernetes requests
Stars: ✭ 111 (+105.56%)
Mutual labels:  policy, policy-as-code
prowler
Prowler is an Open Source Security tool for AWS, Azure and GCP to perform Cloud Security best practices assessments, audits, incident response, compliance, continuous monitoring, hardening and forensics readiness. It contains hundreds of controls covering CIS, PCI-DSS, ISO27001, GDPR, HIPAA, FFIEC, SOC2, AWS FTR, ENS and custom security frameworks.
Stars: ✭ 8,046 (+14800%)
Mutual labels:  compliance, devsecops
dep-scan
Fully open-source security audit for project dependencies based on known vulnerabilities and advisories. Supports both local repos and container images. Integrates with various CI environments such as Azure Pipelines, CircleCI and Google CloudBuild. No server required!
Stars: ✭ 346 (+540.74%)
Mutual labels:  compliance, devsecops
wazuh-packages
Wazuh - Tools for packages creation
Stars: ✭ 54 (+0%)
Mutual labels:  compliance, policy-monitoring
opal
Policy and data administration, distribution, and real-time updates on top of Open Policy Agent
Stars: ✭ 459 (+750%)
Mutual labels:  policy, policy-as-code
Opa Envoy Plugin
A plugin to enforce OPA policies with Envoy
Stars: ✭ 185 (+242.59%)
Mutual labels:  policy, compliance
gamechanger-data
GAMECHANGER aspires to be the Department’s trusted solution for evidence-based, data-driven decision-making across the universe of DoD requirements
Stars: ✭ 17 (-68.52%)
Mutual labels:  policy, policy-as-code
sonarqube-action
Integrate SonarQube scanner to GitHub Actions
Stars: ✭ 90 (+66.67%)
Mutual labels:  static-analysis, devsecops
Inspec
InSpec: Auditing and Testing Framework
Stars: ✭ 2,450 (+4437.04%)
Mutual labels:  audit, compliance
Cfripper
Library and CLI tool for analysing CloudFormation templates and check them for security compliance.
Stars: ✭ 265 (+390.74%)
Mutual labels:  static-analysis, compliance
open-source-logiciel-libre
Open Source Software Requirements and Guidance (Draft) - Exigences et guides liés aux logiciels libres (Ébauche)
Stars: ✭ 31 (-42.59%)
Mutual labels:  policy, policy-as-code
Mobile Security Framework Mobsf
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
Stars: ✭ 10,212 (+18811.11%)
Mutual labels:  static-analysis, devsecops
Static Analysis
⚙️ A curated list of static analysis (SAST) tools for all programming languages, config files, build tools, and more.
Stars: ✭ 9,310 (+17140.74%)
Mutual labels:  static-analysis, sast
nmap-formatter
A tool that allows you to convert NMAP results to html, csv, json, markdown, graphviz (dot). Simply put it's nmap converter.
Stars: ✭ 129 (+138.89%)
Mutual labels:  scanner, devsecops
Horusec
Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.
Stars: ✭ 311 (+475.93%)
Mutual labels:  scanner, static-analysis
Arachni
Web Application Security Scanner Framework
Stars: ✭ 2,942 (+5348.15%)
Mutual labels:  scanner, audit
Security Code Scan
Vulnerability Patterns Detector for C# and VB.NET
Stars: ✭ 550 (+918.52%)
Mutual labels:  scanner, static-analysis
speedle-plus
Speedle+ is an open source project for access management. It is based on Speedle open source project and maintained by previous Speedle maintainers.
Stars: ✭ 45 (-16.67%)
Mutual labels:  policy, compliance
inspec-gke-cis-benchmark
GKE CIS 1.1.0 Benchmark InSpec Profile
Stars: ✭ 27 (-50%)
Mutual labels:  auditing, compliance
pg-audit-json
Simple, easily customised trigger-based auditing for PostgreSQL (Postgres). See also pgaudit.
Stars: ✭ 34 (-37.04%)
Mutual labels:  auditing, audit
Lynis
Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
Stars: ✭ 9,137 (+16820.37%)
Mutual labels:  auditing, compliance
cis-benchmark-centOS-8
Auditing Script based on CIS-BENCHMARK CENTOS 8
Stars: ✭ 34 (-37.04%)
Mutual labels:  auditing, audit
Maplesyrup
Assesses CPU security of embedded devices. #nsacyber
Stars: ✭ 121 (+124.07%)
Mutual labels:  auditing, audit
Information Security Tasks
This repository is created only for infosec professionals whom work day to day basis to equip ourself with uptodate skillset, We can daily contribute daily one hour for day to day tasks and work on problem statements daily, Please contribute by providing problem statements and solutions
Stars: ✭ 108 (+100%)
Mutual labels:  auditing, compliance
havengrc
☁️Haven GRC - easier governance, risk, and compliance 👨‍⚕️👮‍♀️🦸‍♀️🕵️‍♀️👩‍🔬
Stars: ✭ 83 (+53.7%)
Mutual labels:  compliance, devsecops
cscanner
An open source, multi-cloud DevSecOps compliance checker
Stars: ✭ 19 (-64.81%)
Mutual labels:  compliance, devsecops
audit
A common audit framework for java application
Stars: ✭ 28 (-48.15%)
Mutual labels:  auditing, audit
rode
Rode facilitates Automated Governance in your software supply chain. This repository contains the rode API which is the primary interface between the rode UI or rode Collectors and metadata storage in Grafeas. The rode API provides functions for metadata search and storage as well as policy creation and evaluation.
Stars: ✭ 48 (-11.11%)
polscan
Zero-setup SSH-based scanner with extensive visualizations for Debian server inventory, policy compliance and vulnerabilities
Stars: ✭ 57 (+5.56%)
Mutual labels:  auditing, scanner
lunasec
LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/
Stars: ✭ 1,261 (+2235.19%)
Mutual labels:  compliance, devsecops
Wazuh
Wazuh - The Open Source Security Platform
Stars: ✭ 3,154 (+5740.74%)
Mutual labels:  compliance, policy-monitoring
gamechanger
GAMECHANGER aspires to be the Department’s trusted solution for evidence-based, data-driven decision-making across the universe of DoD requirements
Stars: ✭ 27 (-50%)
Mutual labels:  policy, policy-as-code
awesome-policy-as-code
A curated list of policy-as-code resources like blogs, videos, and tools to practice on for learning Policy-as-Code.
Stars: ✭ 121 (+124.07%)
Mutual labels:  devsecops, policy-as-code
cis benchmarks audit
Simple command line tool to check for compliance against CIS Benchmarks
Stars: ✭ 182 (+237.04%)
Mutual labels:  audit, compliance
chimera-admission
A Kubernetes dynamic admission controller that uses WebAssembly policies to validate incoming requests
Stars: ✭ 25 (-53.7%)
Mutual labels:  policy, policy-as-code
wazuh-ansible
Wazuh - Ansible playbook
Stars: ✭ 166 (+207.41%)
Mutual labels:  compliance, policy-monitoring
1-60 of 1100 similar projects