Al's starred repositories

free-for-dev

A list of SaaS, PaaS and IaaS offerings that have free tiers of interest to devops and infradev

Language:HTMLStargazers:85845Issues:1622Issues:0

distrobox

Use any linux distribution inside your terminal. Enable both backward and forward compatibility with software and freedom to use whatever distribution you’re more comfortable with. Mirror available at: https://gitlab.com/89luca89/distrobox

Language:ShellLicense:GPL-3.0Stargazers:9478Issues:55Issues:1003

ThreatMapper

Open Source Cloud Native Application Protection Platform (CNAPP)

Language:TypeScriptLicense:Apache-2.0Stargazers:4723Issues:59Issues:577

security-study-plan

Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so on...

radian

A 21 century R console

Language:PythonLicense:MITStargazers:1966Issues:26Issues:423

sbctl

:computer: :lock: :key: Secure Boot key manager

Language:GoLicense:Apache-2.0Stargazers:1051Issues:23Issues:13

jmap-server

Stalwart JMAP server

Language:RustLicense:AGPL-3.0Stargazers:599Issues:21Issues:37

aftermath

Aftermath is a free macOS IR framework

Language:SwiftLicense:MITStargazers:458Issues:15Issues:14

malheur

A Tool for Automatic Analysis of Malware Behavior

Language:CLicense:GPL-3.0Stargazers:365Issues:56Issues:21

Threat_Model_Examples

Collection of Threat Models

StructLinq

Implementation in C# of LINQ concept with struct

Language:C#License:MITStargazers:297Issues:9Issues:68

codec-from-scratch

Build a simple video encoder from scratch

Language:GoLicense:Apache-2.0Stargazers:279Issues:5Issues:1

oss-ssc-framework

Open Source Software Secure Supply Chain Framework

awesome-CISO-maturity-models

Maturity models help integrate traditionally separate organizational functions, set process improvement goals and priorities, provide guidance for quality processes, and provide benchmark for appraising current processes outcomes.

EdgarRenderer

EDGAR Renderer enables investors to view the interactive data filings submitted under the US Security and Exchange Commission (SEC) rules that require the use of XBRL via the SEC website.

Language:JavaScriptLicense:NOASSERTIONStargazers:152Issues:50Issues:0

vulnerability-write-ups

This repo contains write ups of vulnerabilities I've found and exploits I've publicly developed.

SSVC

Stakeholder-Specific Vulnerability Categorization

Language:PythonLicense:NOASSERTIONStargazers:120Issues:13Issues:286

alpha-omega

Our mission is to catalyze sustainable improvements to critical open source software projects and ecosystems.

Language:Open Policy AgentLicense:Apache-2.0Stargazers:75Issues:16Issues:66

project-foxhound

A web browser with dynamic data-flow tracking enabled in the Javascript engine and DOM, based on Mozilla Firefox (https://github.com/mozilla/gecko-dev). It can be used to identify insecure data flows or data privacy leaks in client-side web applications.

json-resume-service

JSON resumes as a Service - generate Resumes from the resume.json schema

Language:TypeScriptLicense:MITStargazers:67Issues:3Issues:1

clave

🔒 Remote signing

Language:GoLicense:BSD-3-ClauseStargazers:25Issues:4Issues:4

dagger-examples

Examples for the Dagger Python SDK

Language:PythonLicense:Apache-2.0Stargazers:13Issues:2Issues:1

oscal

NIST SP 800-171 OSCAL Content

Language:HTMLLicense:CC0-1.0Stargazers:10Issues:0Issues:0

public-interest-tech-webring

The Public Interest Tech Webring is a collection of blogs dedicated to civic tech, public interest tech, government tech policy, and similar topics.

Language:SCSSLicense:GPL-3.0Stargazers:10Issues:1Issues:14
Language:DockerfileLicense:Apache-2.0Stargazers:3Issues:0Issues:0

deview

A system that confines Progressive Web Apps by debloating web APIs

Language:C++License:MITStargazers:2Issues:2Issues:0

web-malware-examples

Web malware write-ups and samples

Language:PHPStargazers:1Issues:3Issues:0