gittuf is a platform-agnostic security layer for Git repositories that lets developers independently verify repository security policies.
Read more
gittuf is a platform-agnostic security layer for Git repositories that lets developers independently verify repository security policies.
Read more
Digital forensics is a specialist art. It allows investigations to be undertaken without modifying the media.
Read more
Hakoniwa provides Linux process isolation with namespaces, cgroups, resource limits, Landlock, seccomp and configurable filesystem access.
Read more
isolate securely runs untrusted Linux programs in restricted environments with namespaces, cgroups, resource limits and syscall filtering.
Read more
Discover the best free and open source tools for generating and analysing Software Bills of Materials on Linux.
Read more
Here’s our verdict on the best graphical port scanners.
Read moreNotation is a command-line tool for signing and verifying container images and other artifacts stored in OCI registries.
Read more
Syd is a Linux application sandbox using seccomp, Landlock and namespaces to control filesystem, network and process behaviour.
Read more
in-toto protects software supply chains by recording signed metadata for each step and checking the result against a defined layout.
Read more
cosign signs and verifies containers, binaries and other software artifacts using Sigstore, keys, identities and transparency logs.
Read more
NsJail is a process isolation tool designed to run applications inside tightly controlled environments.
Read more
bubblewrap is a low-level Linux sandboxing tool for constructing restricted process environments with namespaces, bind mounts and seccomp.
Read more
knife is a reverse engineering toolkit for static analysis of PE, ELF and Mach-O binaries, with disassembly, triage and auditing.
Read more
sbomnix generates CycloneDX and SPDX Software Bills of Materials for Nix flakes and store paths, with dependency and metadata analysis.
Read more
CycloneDX CLI analyzes, converts, merges, signs, verifies and validates BOM documents, with support for CycloneDX and SPDX formats.
Read more
Discover free and open source malware sandboxes for static and dynamic analysis of suspicious software.
Read more
Capstone is a lightweight multi-architecture disassembly framework with detailed instruction metadata, and numerous bindings.
Read more
bom is a command-line SBOM multitool for creating, viewing and transforming SPDX documents from files, directories and container images.
Read more