Pinned Repositories
badrobot
BadRobot - Operator Security Audit Tool
kubectl-kubesec
Security risk analysis for Kubernetes resources
kubesec
Security risk analysis for Kubernetes resources
kubesec-action
Runs Kubesec as GitHub action
kubesec-webhook
Security risk analysis for Kubernetes resources
netassert
Network security testing for Kubernetes DevSecOps workflows
simulator
Kubernetes Security Training Platform - focusing on security mitigation
theseus
Continuous Zero-Downtime Deployments for Kubernetes & Istio
threat-modelling-labs
Labs for Threat Modelling training delivered by ControlPlane
truffleproc
truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)
ControlPlane's Repositories
controlplaneio/kubesec
Security risk analysis for Kubernetes resources
controlplaneio/simulator
Kubernetes Security Training Platform - focusing on security mitigation
controlplaneio/kubectl-kubesec
Security risk analysis for Kubernetes resources
controlplaneio/netassert
Network security testing for Kubernetes DevSecOps workflows
controlplaneio/badrobot
BadRobot - Operator Security Audit Tool
controlplaneio/truffleproc
truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)
controlplaneio/kubesec-webhook
Security risk analysis for Kubernetes resources
controlplaneio/threat-modelling-labs
Labs for Threat Modelling training delivered by ControlPlane
controlplaneio/collie
OSCAL and Kyverno Policy Demo for AWS
controlplaneio/ai-security-architecture
Reference security architecture for AI applications
controlplaneio/threat-modelling-zero-trust-talk
controlplaneio/operator-threat-matrix
Kubernetes Operator Threat Matrix
controlplaneio/cp-jenkins
ControlPlane's Opinionated Jenkins-as-Code
controlplaneio/netassertv2-packet-sniffer
This repo houses Netassertv2 TCP/UDP Packet sniffer
controlplaneio/research-vscode
Results of Kevin & Fabian's R&D week on VSCode security
controlplaneio/threat-modelling-envoy-gateway-talk
Demos and investigation work supporting the Envoy Gateway threat model
controlplaneio/hostile-npm
An example of a hostile pre-install npm hook
controlplaneio/tekton-training
Sample Tekton Pipeline specification for ControlPlane training labs.
controlplaneio/tools-for-ethical-and-robust-ai-systems
Examples, runbooks and talk material for Kubecon AI day talk: Open Source tools to empower robust and ethical AI systems
controlplaneio/very-vulnerable
A example deliberately vulnerable Go application and container for verifying container scanning on offsec engagements
controlplaneio/netassertv2-l4-client
This repo houses the Layer 4 (TCP/UDP) client used by Netassert v2
controlplaneio/.github
Github landing page README
controlplaneio/common-cloud-controls
FINOS Common Cloud Controls
controlplaneio/distribution
Enterprise Distribution for Flux CD
controlplaneio/k8s-prom-hpa
Kubernetes Horizontal Pod Autoscaler with Prometheus custom metrics
controlplaneio/opa
An open source, general-purpose policy engine.
controlplaneio/policy
CLI for building OPA policies into OCI images
controlplaneio/PubSec-Info-Assistant
Information Assistant, built with Azure OpenAI Service, Industry Accelerator
controlplaneio/semgrep-rules
Semgrep rules registry
controlplaneio/starter-ml
Demos and investigation work supporting CP AI talks at FINOS and CNSECCON 24