Alexander Stein (Inactive)'s starred repositories

python-patterns

A collection of design patterns/idioms in Python

LuLu

LuLu is the free macOS firewall

Language:Objective-CLicense:GPL-3.0Stargazers:9620Issues:149Issues:584

public-pentesting-reports

A list of public penetration test reports published by several consulting firms and academic security groups.

malicious-pdf

đź’€ Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh

Language:PythonLicense:BSD-2-ClauseStargazers:2811Issues:61Issues:9

examples

Learn to create a desktop app with Python and Qt

Language:C#License:Apache-2.0Stargazers:1362Issues:41Issues:1

magic-modules

Add Google Cloud Platform support to Terraform

Language:HTMLLicense:Apache-2.0Stargazers:790Issues:49Issues:0

awesome-opa

A curated list of OPA related tools, frameworks and articles

vulnerability-rating-taxonomy

Bugcrowd’s baseline priority ratings for common security vulnerabilities

Language:PythonLicense:Apache-2.0Stargazers:425Issues:123Issues:203

threat-model-cookbook

This project is about creating and publishing threat model examples.

Language:PythonLicense:NOASSERTIONStargazers:399Issues:44Issues:21

security-stack-mappings

🚨ATTENTION🚨 The Security Stack Mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here as an archive.

Language:PythonLicense:Apache-2.0Stargazers:379Issues:86Issues:16

solarflare

SolarWinds Orion Account Audit / Password Dumping Utility

Language:C#License:BSD-3-ClauseStargazers:346Issues:16Issues:2

codalab-worksheets

A collaborative platform for reproducible research (web interface and CLI).

Language:PythonLicense:NOASSERTIONStargazers:154Issues:19Issues:2242

portable-data-exfiltration

This repo contains all the injections mentioned in my talk and enumerators.

Language:JavaScriptStargazers:114Issues:5Issues:0

spdx-online-tools

Source for the website providing online SPDX tools

Language:JavaScriptLicense:Apache-2.0Stargazers:60Issues:14Issues:241

ssp-toolkit

Automate the creation of a System Security Plan (SSP)

Language:JinjaLicense:GPL-3.0Stargazers:33Issues:13Issues:1

emasser

eMASSer is a command-line interface (CLI) that aims to automate routine business use-cases and provide utility surrounding the Enterprise Mission Assurance Support Service (eMASS) by leveraging its representational state transfer (REST) application programming interface (API).

Language:RubyLicense:NOASSERTIONStargazers:30Issues:20Issues:20

ars-machine-readable

Publish a machine readable version of the ARS standards to facilitate compliance as code efforts.

Serverless-Workshop

Serverless Workshop

Language:PythonStargazers:16Issues:3Issues:0
Language:PythonLicense:GPL-3.0Stargazers:12Issues:17Issues:1

xvrl

Extensible Validation Reporting Language

compliance-io

Python library for reading/writing compliance as code

Language:PythonLicense:GPL-3.0Stargazers:10Issues:4Issues:24

tmdl

An attempt at creating a unifying Threat Model Definition Language using a declarative syntax with cuelang

zerotrust

Joint OMB and CISA homepage for a government-wide effort to move the U.S. government towards zero trust cybersecurity principles.

Language:JavaScriptLicense:NOASSERTIONStargazers:7Issues:6Issues:0

inspecjs

MIGRATED: A Typescript Library for working with InSpec data

Language:TypeScriptLicense:NOASSERTIONStargazers:6Issues:18Issues:9

rato-website

Rapid ATO website content focused on demystifying security & compliance at CMS.

Language:JavaScriptStargazers:2Issues:16Issues:0