Pinned Repositories
90DaysOfDevOps
This repository is my documenting repository for learning the world of DevOps. I started this journey on the 1st January 2022 and I plan to run to March 31st for a complete 90-day romp on spending an hour a day including weekends to get a foundational knowledge across a lot of different areas that make up DevOps.
AD-Pentesting
adidas-devops-maturity-framework
The DevOps maturity framework was created by adidas as a guide for the first DevOps cup to support the teams on their DevOps transformation journey.
allstar
GitHub App to set and enforce security policies
Amass
In-depth Attack Surface Mapping and Asset Discovery
API-Security-Checklist
Checklist of the most important security countermeasures when designing, testing, and releasing your API
API-SecurityEmpire
API Security Project aims to present unique attack & defense methods in API Security field
nist-ssdf-markdown
A version of the NIST Secure Software Development Framework (SSDF), in Markdown
Tautulli
A Python based monitoring and tracking tool for Plex Media Server.
tram-1
TRAM is an open-source platform designed to advance research into automating the mapping of cyber threat intelligence reports to MITRE ATT&CK®.
SMBowen's Repositories
SMBowen/nist-ssdf-markdown
A version of the NIST Secure Software Development Framework (SSDF), in Markdown
SMBowen/90DaysOfDevOps
This repository is my documenting repository for learning the world of DevOps. I started this journey on the 1st January 2022 and I plan to run to March 31st for a complete 90-day romp on spending an hour a day including weekends to get a foundational knowledge across a lot of different areas that make up DevOps.
SMBowen/Adalanche
Active Directory ACL Visualizer and Explorer - who's really Domain Admin? (Commerical versions available from NetSection)
SMBowen/attack-flow
Attack Flow helps executives, SOC managers, and defenders easily understand how attackers compose ATT&CK techniques into attacks by developing a representation of attack flows, modeling attack flows for a small corpus of incidents, and creating visualization tools to display attack flows.
SMBowen/awesome-cybersecurity-maturity-models
Maturity models help integrate traditionally separate organizational functions, set process improvement goals and priorities, provide guidance for quality processes, and provide benchmark for appraising current processes outcomes.
SMBowen/awesome-entra
😎 Awesome list of all things related to Microsoft Entra
SMBowen/AzureAD-Attack-Defense
This publication is a collection of various common attack scenarios on Azure Active Directory and how they can be mitigated or detected.
SMBowen/barrier
Open-source KVM software
SMBowen/CDM-Generator
Generate a matrix based on an inventory of InfoSec tools
SMBowen/chaosmonkey
Chaos Monkey is a resiliency tool that helps applications tolerate random instance failures.
SMBowen/cloud-security-remediation-guides
Security Remediation Guides
SMBowen/cloudsploit
Cloud Security Posture Management (CSPM)
SMBowen/DevSecOps-MaturityModel
SMBowen/DevSecOps-Playbook
SMBowen/django-DefectDojo
DefectDojo is a DevSecOps and vulnerability management tool.
SMBowen/ElectricEye
Continuously monitor your AWS attack surface and evaluate services for configurations that can lead to degradation of confidentiality, integrity or availability. All results can be exported to Security Hub, JSON, CSV, Databases, and more for further aggregation and analysis.
SMBowen/Getting-into-InfoSec-and-Cybersecurity
A shorter, less intimidating list of infosec resources helpful for anyone trying to learn.
SMBowen/How-To-Secure-A-Linux-Server
An evolving how-to guide for securing a Linux server.
SMBowen/MetaGPT
🌟 The Multi-Agent Framework: Given one line Requirement, return PRD, Design, Tasks, Repo
SMBowen/MetaOSINT.github.io
A tool to quickly identify relevant, publicly-available open source intelligence ("OSINT") tools and resources, saving valuable time during investigations, research, and analysis.
SMBowen/Mindmap
SMBowen/ocsf-schema
OCSF Schema
SMBowen/osint_toolkit
A full stack web application that combines many tools and services for security analysts into a single tool.
SMBowen/oss-ssc-framework
Open Source Software Secure Supply Chain Framework
SMBowen/RedEye
RedEye is a visual analytic tool supporting Red & Blue Team operations
SMBowen/ScubaGear
Automation to assess the state of your M365 tenant against CISA's baselines
SMBowen/SecureControlsFramework_PowerBI_
An SCF Based Power BI Template
SMBowen/sherlock
🔎 Hunt down social media accounts by username across social networks
SMBowen/stride-gpt
An AI-powered threat modeling tool that leverages OpenAI's GPT models to generate threat models for a given application based on the STRIDE methodology.
SMBowen/Watcher
Watcher - Open Source Cybersecurity Threat Hunting Platform. Developed with Django & React JS.