TerraGoat Logo

TerraGoat

0
Free
Visit Website

TerraGoat is Bridgecrew's 'Vulnerable by Design' Terraform repository that demonstrates common configuration errors in production cloud environments. It enables DevSecOps to implement misconfiguration prevention strategies and test policy-as-code frameworks like Bridgecrew & Checkov.

FEATURES

ALTERNATIVES

Hackazon is a free, vulnerable test site with an online storefront to train and test IT security professionals on various vulnerabilities like SQL Injection and cross-site scripting.

Orchestration toolchain for scanning source code and infrastructure IaC against security risks.

A plugin for viewing, detecting weak configurations, and generating Content Security Policy headers.

Pre-commit hook for validating outgoing changeset

CSRF crumb generation and validation tool for hapi framework.

An application security platform that provides runtime threat modeling, vulnerability management, and automated remediation workflows with a focus on identifying exploitable vulnerabilities in production environments.

DerScanner is a comprehensive application security testing platform that combines SAST, DAST, MAST, SCA, and Binary Analysis capabilities with support for on-premises deployment and CI/CD integration.

A SaaS-based web application firewall that combines signature and behavioral-based threat detection to protect applications deployed across cloud, on-premises and edge environments.