TerraGoat is Bridgecrew's 'Vulnerable by Design' Terraform repository that demonstrates common configuration errors in production cloud environments. It enables DevSecOps to implement misconfiguration prevention strategies and test policy-as-code frameworks like Bridgecrew & Checkov.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A tool for detecting capabilities in executable files, providing insights into a program's behavior and potential malicious activities.
A PHP port of Rack::Honeypot, a spam trap that detects and blocks spambots
A comprehensive toolkit for web application security testing, offering a range of products and solutions for identifying vulnerabilities and improving security posture.
Static application security testing (SAST) tool for scanning source code against security and privacy risks.
A web application security testing platform that helps you test your knowledge on web application security through realistic scenarios with known vulnerabilities.
A security-focused general purpose memory allocator providing the malloc API with hardening against heap corruption vulnerabilities.
A Java API for searching and downloading Android applications from Google Play with additional check-in features for generating ANDROID-ID.
Integrates static APK analysis with Yara and requires re-compilation of Yara with the androguard module.
A brute-force protection middleware for express routes that rate-limits incoming requests.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.