-
Updated
Jan 23, 2021 - Python
devsecops
Here are 247 public repositories matching this topic...
-
Updated
Jan 17, 2021 - JavaScript
-
Updated
Jan 12, 2021
-
Updated
Jan 20, 2021 - CSS
-
Updated
Jan 14, 2021 - Python
The component_name
and component_version
fields were added recently. Some scanners already populate these fields, but lots of them don't. For some scanners these fields cannot be set, i.e. for scanners that try xss on web pages etc. But probably there are some scanners that can/should be updated.
- terrascan version: 1.2
- Operating System: all
Description
When scanning a repo, if the severity field is not all caps (HIGH|MEDIUM|LOW), when violations are output, the color of the severity field does not show up. The compare should be case-insensitive, OR we can normalize the severity field.
What I Did
terrascan scan -d [dir]
-
Updated
Jan 15, 2021 - HTML
-
Updated
Oct 17, 2020 - CSS
-
Updated
Jan 21, 2021 - Python
The current swagger definition is autogenerated. The automatically generated definitions rely on reflection and annotations to create the documentation. The reflection capabilities are poor at best and lead to missing API parameters. Annotations can help in some cases, but the only fix for Swagger is to create individual POJOs for every possible request. This will lead to unnecessary large number
-
Updated
Jan 16, 2021
-
Updated
Dec 12, 2020 - Go
-
Updated
Jan 17, 2021 - HCL
Document ZAP
-
Updated
Dec 9, 2020 - HCL
-
Updated
Jun 1, 2020 - Python
-
Updated
Jan 18, 2021
-
Updated
Dec 18, 2020 - Dockerfile
-
Updated
Jan 21, 2021 - JavaScript
-
Updated
Aug 7, 2020
-
Updated
Jul 10, 2020 - Dockerfile
Hi,
It would be interesting to have those new rules integrated in ChopChop, see : https://github.com/nnposter/nndefaccts/blob/master/http-default-accounts-fingerprints-nndefaccts.lua
It will be a fun exercise to make scan work for mono repos such as https://github.com/swapnil-linux/spring-boot-examples
In theory, this can be achieved using a bit of bash with the new scan AppImage.
-
Updated
Aug 18, 2020 - TypeScript
-
Updated
Jan 7, 2021 - Scala
Improve this page
Add a description, image, and links to the devsecops topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the devsecops topic, visit your repo's landing page and select "manage topics."
Do not allow action
“*”
or resources“*”
in an IOT PolicyExample policies are here: https://docs.aws.amazon.com/iot/latest/developerguide/example-iot-policies.html
https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-iot-policy.html
https://www.terraform.io/docs/providers/aws/r/iot_policy.html