Riccardo Mazza's starred repositories

Prompt-Engineering-Guide

🐙 Guides, papers, lecture, notebooks and resources for prompt engineering

MetaGPT

🌟 The Multi-Agent Framework: First AI Software Company, Towards Natural Language Programming

Language:PythonLicense:MITStargazers:41070Issues:870Issues:560

selenium

A browser automation framework and ecosystem.

Language:JavaLicense:Apache-2.0Stargazers:29684Issues:1293Issues:10184

opentofu

OpenTofu lets you declaratively manage your cloud infrastructure.

Language:GoLicense:MPL-2.0Stargazers:21499Issues:117Issues:824

kube-bench

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

Language:GoLicense:Apache-2.0Stargazers:6759Issues:107Issues:463

OWASP-Web-Checklist

OWASP Web Application Security Testing Checklist

ggshield

Find and fix 360+ types of hardcoded secrets and 70+ types of infrastructure-as-code misconfigurations.

Language:PythonLicense:MITStargazers:1565Issues:30Issues:185

awesome-threat-modelling

A curated list of threat modeling resources (Books, courses - free and paid, videos, tools, tutorials and workshops to practice on ) for learning Threat modeling and initial phases of security review.

Language:DockerfileLicense:CC0-1.0Stargazers:1290Issues:64Issues:4

openappsec

open-appsec is a machine learning security engine that preemptively and automatically prevents threats against Web Application & APIs. This repo include the main code and logic.

Language:C++License:Apache-2.0Stargazers:725Issues:18Issues:102

threagile

Agile Threat Modeling Toolkit

Language:GoLicense:MITStargazers:574Issues:30Issues:42

prompts-royale

Automatically create prompts and make them fight each other to know which is the best

Language:VueLicense:NOASSERTIONStargazers:535Issues:10Issues:10

attack-flow

Attack Flow helps executives, SOC managers, and defenders easily understand how attackers compose ATT&CK techniques into attacks by developing a representation of attack flows, modeling attack flows for a small corpus of incidents, and creating visualization tools to display attack flows.

Language:TypeScriptLicense:Apache-2.0Stargazers:516Issues:89Issues:27

gittuf

A security layer for Git repositories

Language:GoLicense:Apache-2.0Stargazers:439Issues:17Issues:88

chalk

Chalk allows you to follow code from development, through builds and into production.

Language:NimLicense:GPL-3.0Stargazers:321Issues:11Issues:132

stride-gpt

An AI-powered threat modeling tool that leverages OpenAI's GPT models to generate threat models for a given application based on the STRIDE methodology.

Language:PythonLicense:MITStargazers:313Issues:12Issues:10

RiskAssessmentFramework

The Secure Coding Framework

Language:TypeScriptLicense:MITStargazers:256Issues:30Issues:21

modelscan

Protection against Model Serialization Attacks

Language:PythonLicense:Apache-2.0Stargazers:226Issues:11Issues:36

malicious-packages

A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerability (OSV) format.

Language:GoLicense:Apache-2.0Stargazers:202Issues:12Issues:8

llm-security

Dropbox LLM Security research code and results

Language:PythonLicense:Apache-2.0Stargazers:189Issues:6Issues:0

OWASP-Calculator

🧮 An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessment

Language:HTMLLicense:MITStargazers:138Issues:5Issues:5

Software-Component-Verification-Standard

Software Component Verification Standard (SCVS)

Language:PythonLicense:CC-BY-SA-4.0Stargazers:132Issues:32Issues:23

Hallucination-Attack

Attack to induce LLMs within hallucinations

Language:PythonLicense:MITStargazers:88Issues:2Issues:1
Language:PythonLicense:MITStargazers:80Issues:11Issues:5

www-project-machine-learning-security-top-10

OWASP Machine Learning Security Top 10 Project

Language:HTMLLicense:NOASSERTIONStargazers:60Issues:18Issues:87

llm-confidentiality

Whispers in the Machine: Confidentiality in LLM-integrated Systems

Language:PythonLicense:Apache-2.0Stargazers:21Issues:2Issues:1

www-project-top-25-parameters

OWASP Foundation Web Respository

Language:HTMLLicense:NOASSERTIONStargazers:21Issues:5Issues:0

security-culture

OWASP Security Culture repository

Language:ShellLicense:CC-BY-SA-4.0Stargazers:3Issues:4Issues:0

traNsLatorLaB

Come identificare la lingua di un testo e tradurlo nella lingua desiderata utilizzando i modelli Facebook fasttext e No Language Left Behind (NLLB) o Helsinki-NLP

Language:Jupyter NotebookLicense:MITStargazers:2Issues:1Issues:0