software-security
There are 126 repositories under software-security topic.
trickest/cve
Gather and update all available and newest CVEs with their PoC.
DependencyTrack/dependency-track
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
trickest/inventory
Asset inventory of over 800 public bug bounty programs.
dependency-check/dependency-check-sonar-plugin
Integrates Dependency-Check reports into SonarQube
DoS0x99/cyber-security-books
A collection of FREE cyber security books
feicong/macbook
《macOS软件安全与逆向分析》随书源码
Plailect/keyshuffling
Keyshuffling Attack for Persistent Early Code Execution in the Nintendo 3DS Secure Bootchain
albuch/sbt-dependency-check
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs). :rainbow:
stevespringett/nist-data-mirror
A simple Java command-line utility to mirror the CVE JSON data from NIST.
trickest/find-gh-poc
Find CVE PoCs on GitHub
jenkinsci/dependency-check-plugin
Jenkins plugin for OWASP Dependency-Check. Inspects project components for known vulnerabilities (e.g. CVEs).
vishalgarg-sec/Software-Supply-Chain-Security
A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling, books, articles and a plethora of learning resources from the web.
trickest/log4j
Trickest Workflow for discovering log4j vulnerabilities and gathering the newest community payloads.
stevespringett/threatmodel-sdk
A Java library for parsing and programmatically using threat models
OtherDevOpsGene/zap-sonar-plugin
Integrates OWASP Zed Attack Proxy reports into SonarQube
SunLab-GMU/GraphSPD
The official repository of "GraphSPD: Graph-Based Security Patch Detection with Enriched Code Semantics". The paper will appear in the IEEE Symposium on Security and Privacy (S&P), San Francisco, CA, May 22-26, 2023.
stevespringett/vulndb-data-mirror
A simple Java command-line utility to mirror the entire contents of VulnDB.
ramizebian/Software-Security
Solutions and discussions from the Software Security course on Coursera. Open for collaboration and knowledge sharing.
petrsocha/sicak
SIde-Channel Analysis toolKit: embedded security evaluation tools
hakbot/hakbot-origin-controller
Vendor-Neutral Security Tool Automation Controller (over REST)
iosifache/ossfortress
Workshop for finding software vulnerabilities using open source tools, which includes a Goat-like Python and C application
AlBovo/Olicyber-WriteUps
This repository contains all the source code for the various writeups I have written over time of all the Olicyber editions I have participated in.
fouzhe/security
software vulnerabilities
nMoncho/sbt-dependency-check
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs).
OmarAlmighty/Coursera-Software-Security
Solutions to Software Security course provided by University of Maryland - Coursera
biniamf/data_obfuscation
Data Obfuscation for C/C++ Code Based on Residue Number Coding (RNC)
trickest/packages
Automated compromise detection of the world's most popular packages
awsm-research/Awesome-AI4DevSecOps
This repository offers a detailed taxonomy of existing AI-driven security solutions tailored for DevSecOps, highlighting the current research challenges and suggesting future directions for the field. It serves as a resource for researchers, developers, and security professionals interested in the intersection of AI and DevSecOps.
paser-group/continuous-secsoft
Placeholder for course materials taught by Akond Rahman
claire-lex/megagrep
Megagrep helps beginning a code review by searching for keywords in the code using "grep". It does not search for vulnerabilities directly but for places where you could manually find some.
SoftwareCraftersSydney/events
Repository of events for the Software Crafters Sydney community
i-m-down-QQ/writeups
CTF Writeups Backup
Plailect/bootroms
Attacking the Nintendo 3DS Boot ROMs
Cottontail-Proj/cottontail
Cottontail is currently under review
Catalyzator/SEEDlab
My lab reports for some of the security labs developed by Prof. Du of SU.
feicong/macbook_issues
《macOS软件安全与逆向分析》勘误