GitHub Trends
11.1K subscribers
15.8K links
See what the GitHub community is most excited about today.

A bot automatically fetches new repositories from https://github.com/trending and sends them to the channel.

Author and maintainer: https://github.com/katursis
Download Telegram
#python #anssi #audit #bsi #cis #compliance #cybersecurity #dora #ebios_rm #fedramp #gdpr #grc #hipaa #isms #iso27001 #nis2 #nist #owasp #privacy #risk_management #soc2

CISO Assistant is a tool that helps manage cyber security and compliance. Here’s what you need to know:

- It separates compliance from cybersecurity controls, making it easier to manage.
- It includes built-in standards, security controls, and threat catalogs.
- You can assess risks and create remediation plans.
- It supports many frameworks like ISO 27001, NIST, GDPR, and more.
- You can use your own frameworks and manage audits, evidence collection, and reports.

Using CISO Assistant saves time by allowing you to reuse assessments, assess multiple frameworks at once, and automate reporting. It's developed by intuitem and has a free trial available. You can run it locally using Docker or join the community on Discord for support. This tool helps cyber security teams streamline their processes and reduce paperwork.

https://github.com/intuitem/ciso-assistant-community
👍1
#go #attack_surfaces #dns #enumeration #go #golang #information_gathering #maltego #network_security #osint #osint_reconnaissance #owasp #recon #subdomain

OWASP Amass is a tool that helps you find and map all the parts of a company's online presence, like websites, servers, and other internet-connected assets. It uses various techniques such as checking APIs, certificates, DNS records, and web archives to gather this information. This tool is useful because it gives you a complete picture of your company's attack surface, helping you identify potential security risks and protect your assets better. You can install it easily using prebuilt packages, Docker, or by compiling it from source code. The community supports it actively, and there are many resources available to help you get started and troubleshoot any issues.

https://github.com/owasp-amass/amass
👍2
#dockerfile #application_security #appsec #best_practices #bugbounty #guide #hacking #hacktoberfest #owasp #penetration_testing #pentesting #security

The OWASP Web Security Testing Guide (WSTG) is a comprehensive resource for testing the security of web applications and services. Created by security professionals and volunteers, it provides a framework of best practices used globally. The guide is constantly updated, with the current version being 5.0, and previous stable releases like 4.2 available. Users can benefit by learning detailed methods for securing web applications, contributing to the guide through feedback or translations, and connecting with the community via Slack, Twitter, or Google Groups. This helps ensure your web applications are secure and up-to-date with the latest security standards.

https://github.com/OWASP/wstg
#python #agent_framework #ai_agents #ai_safety #compliance #governance #microsoft #owasp #policy_engine #python #security #trust #zero_trust

Agent Governance Toolkit helps you control AI agents with policy checks, identity, sandboxing, and audit logs so unsafe actions are blocked before they happen. It lets you govern tools in a few lines of code, works with many languages and agent frameworks, and gives you compliance and security checks, which helps you launch agents more safely and prove what they did.

https://github.com/microsoft/agent-governance-toolkit