cyberstars
cyberstars / purpose / devsecops

Outils pour devsecops

Shift-left scanning in CI/CD pipelines.

54 tools indexed

Python AST-based security linter.

ScanAnalyzeSource code
PythonApache-2.0

Cloud-native open-source WAF.

MonitorHardenWeb appsCloud
PythonAGPL-3.0

Web vulnerability scanner with custom POCs.

ScanWeb apps
Custom

Policy-as-code for infrastructure.

ScanHardenIaCCloud
PythonApache-2.0

Sign and verify container images.

HardenAnalyzeCloudSource code
GoApache-2.0

C++ cryptographic schemes library.

HardenAnalyzeSource codeBinaries
C++BSL-1.0

Lightning-fast XSS sanitizer.

HardenWeb appsSource code
JavaScriptApache-2.0

Component analysis platform.

ScanMonitorSource codeCloud
JavaApache-2.0

Smart contract fuzzer.

FuzzScanSource codeBinaries
HaskellAGPL-3.0

Runtime security for containers.

MonitorCloudEndpoints
C++Apache-2.0

GUAC

Aggregate software security metadata.

AnalyzeAutomateCloudSource code
GoApache-2.0

Secret detection in Git repos.

ScanSource code
GoMIT

Vulnerability scanner for containers and filesystems.

ScanCloudSource code
GoApache-2.0

Dockerfile linter.

ScanHardenIaCSource code
HaskellGPL-3.0

Open-source secrets + cert + PAM platform.

HardenAutomateCloudSource code
TypeScriptApache-2.0

Static analysis for Kubernetes manifests.

ScanHardenIaCCloud
GoApache-2.0

First open-source K8s security platform.

ScanHardenCloudIaC
GoApache-2.0

Kubernetes-native policy engine.

HardenAutomateCloudIaC
GoApache-2.0

Mobile app security testing.

ScanAnalyzeMobile apps
PythonGPL-3.0

Symbolic-execution for EVM bytecode.

ScanAnalyzeBinariesSource code
PythonMIT

Template-based vulnerability scanner.

ScanWeb appsNetworks
GoMIT

Continuous fuzzing for open source.

FuzzAutomateSource codeBinaries
ShellApache-2.0

Dependency vulnerability scanner.

ScanSource codeCloud
GoApache-2.0

Open-source threat modeling.

AnalyzeHardenSource codeCloud
JavaScriptApache-2.0