Projects with this topic
-
Read-only mirror of cicd-sensor: An open-source runtime security monitoring tool for CI/CD environments leveraging eBPF.
Updated -
Lightweight, secure control plane & real-time web dashboard in Crystal for Linux firewalld and NetworkManager host security.
Updated -
Reconciliation audit for Alliance Auth's Discord integration: finds guild members holding AA-managed roles that Auth never granted and strips or kicks them under an operator-controlled policy. Standalone community Django app.
Updated -
Hoppr-Cop is CLI and Hoppr Plugin that generates high quality vulnerability information from a cyclone-dx Software Bill of Materials (SBOM) by aggregating data from multiple vulnerability databases.
Updated -
-
QUIC-native TLS 1.3 implementation in Zig. RFC 8446/9001 compliant with zero external dependencies.
Updated -
eBPF + nftables + DNS proxy egress enforcement for GitLab Runner CI/CD job containers — community edition data plane
Updated -
Which online repositories does my system rely on?
Updated -
The official Arti Mobile library, supported by Tor Project, bringing the new Tor Rust runtime to mobile devices.
Learn more at: https://guide.onionmobile.dev/tor-on-android/arti-mobile-on-android and https://arti.torproject.org/
building on: https://codeberg.org/uniqx/arti-android/ and https://gitlab.torproject.org/trinity-1686a/arti-mobile-example
Updated -
Koyane-Framework :: wordlist forge & analysis toolkit
Updated -
Ada Keystore - protect your sensitive data with secure storage
Updated -
Security module for php7 and php8 - Killing bugclasses and virtual-patching the rest! https://snuffleupagus.rtfd.io
Updated -
libOSCORE: A portable implementation of OSCORE (application-layer security for the Constrained Application Protocol CoAP) usable for embedded devices
Updated -
Updated
-
Keycloak PoW Extension — adds computational PoW (proof-of-work) challenges to login, registration, and password-reset flows. Protects against bot spam and brute-force attacks by requiring clients to solve a light cryptographic puzzle before authenticating. Uses Argon2 (memory-hard, GPU-resistant) or SHA-256, with IP-adaptive difficulty that scales challenge hardness based on per-IP request patterns. Rate state is stored in Infinispan, enabling shared difficulty tracking across clustered Keycloak instances. Deploy as a standard Keycloak SPI plugin — works with any Keycloak 26.6 instance.
Three-layer defense on every submission:
Honeypot — silently rejects bots that auto-fill all form fields Solve-time validation — rejects submissions arriving faster than configured minimum (default 500ms) Hash verification — verifies proof-of-work correctness and prevents nonce replay attacksUpdated -
-
A Python-based CLI tool designed to scan GitLab projects for compliance against the CIS GitLab Benchmark. Check out the recommendations-as-code in this repo. Read the docs for more info.
Updated -
Cellar Documentation: https://cellar-app.io | API Reference https://cellar-app.gitlab.io/cellar-api
Updated -
Architecture warehouse retail (Kimball) — star schema complet avec dbt + DuckDB (dev) et Snowflake (prod). SCD Type 2, gouvernance des données, masquage PII et gestion des rôles.
Updated -
Projet Data Mesh — 4 domaines financiers (customers, accounts, transactions, risk) avec dbt/PostgreSQL, contrats de données, RBAC/RLS, audit trail et scripts de gouvernance automatisés.
Updated