Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
-
Updated
Nov 14, 2024 - Java
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
A public open sourced tool. Log4J scanner that detects vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046, etc) on your file-system within any application. It is able to even find Log4J instances that are hidden several layers deep. Works on Linux, Windows, and Mac, and everywhere else Java runs, too! TAG_OS_TOOL, OWNER_KELLY, DC_PUBLIC
xAST评价体系,让安全工具不再“黑盒”. The xAST evaluation benchmark makes security tools no longer a "black box".
A simple Java command-line utility to mirror the CVE JSON data from NIST.
用于检测maven项目的第三方依赖组件是否存在安全漏洞。
A simple Java command-line utility to mirror the entire contents of VulnDB.
Application security best practices and code implementations for Java developers. This project is intended for didactic purposes only, supporting my training course.
Lucy is a component analysis platform to minimize the risk of license infringements and to support and optimize the license compliance process.
Detect Licenses, dependencies by scanning your project/repositories to discover the Open Source and Third party packages used in your code.
Java Ecommerce Application with microservices Architecture
Cordova plugin specifically for the SCA Stripe Intent API. Can be used with Ionic etc.
: SmartBuyer.com is an upcoming e-commerce platform that offers ease of buying across the best e-commerce websites from a single site. It offers a complete marketplace to consumers, where they can compare prices from various sites and conveniently make a purchase. Smart Buyer is the consumer brand of India’s leading Software service providers
Complete Real-Time Project for JAVA Application DevSecOps using GitHub Action: CI/CD Project
Same vulnerable app as swsec-intro, but in a more modern framework.
Learn DevSecOps with this Demo Application.
Add a description, image, and links to the sca topic page so that developers can more easily learn about it.
To associate your repository with the sca topic, visit your repo's landing page and select "manage topics."