Awesome Cybersecurity Blue Team
Section: DevSecOps · Tool for securely accessing secrets such as API keys, passwords, or certificates through a unified interface.
Entry
Appears in 6 awesome lists
Secures, stores, and tightly controls access to tokens, passwords, certificates, API keys, and other secrets in modern computing.
Section: DevSecOps · Tool for securely accessing secrets such as API keys, passwords, or certificates through a unified interface.
Section: DevSecOps · 用于通过统一的界面安全访问密钥(例如API密钥,密码或证书)的工具
Section: Environment & Secret Management · API-driven secret key management.
Section: Secrets Management · HashiCorp - Securely store secrets via UI, CLI or HTTP API.
Section: Security · Secures, stores, and tightly controls access to tokens, passwords, certificates, API keys, and other secrets in modern computing.
Section: Datastores · An encrypted datastore secure enough to hold environment and application secrets.
copyright: — Snyk Code finds security vulnerabilities based on AI. Its speed of analysis allow us to analyse your code in real time and deliver results when you hit the save button in your IDE. Supported languages are Java, JavaScript, Python, PHP, C#, Go and TypeScript. Integrations with GitHub,…
A Simple and Comprehensive Vulnerability Scanner for Containers and other Artifacts, Suitable for CI. Trivy detects vulnerabilities of OS packages (Alpine, RHEL, CentOS, etc.) and application dependencies (Bundler, Composer, npm, yarn, etc.). Checks containers and filesystems.
Safely store secrets in Git/Mercurial. Provides tooling to automatically encrypt secrets like passwords.
SonarQube empowers development teams with a code quality and security solution that deeply integrates into your enterprise environment; enabling you to deploy clean code consistently and reliably. SonarQube provides a free and open source Community Build.
sops is an editor of encrypted files that supports YAML, JSON and BINARY formats and encrypts with AWS KMS, GCP KMS, Azure Key Vault and PGP.
Prevents you from committing passwords and other sensitive information to a git repository.
project (GitHub repository) is a technology relying on eBPF and XDP to provide "fast in-kernel networking and security policy enforcement for containers based on eBPF programs generated on the fly". Many presentations available (with overlap):
Static analysis tool to probe for vulnerabilities introduced via application container (e.g., Docker) images.