Skip to content
View tohch4's full-sized avatar
✈️
I no longer work with Flexion.
✈️
I no longer work with Flexion.

Block or report tohch4

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results
Python 8 2 Updated Mar 25, 2021

Source for the website providing online SPDX tools

JavaScript 70 60 Updated Dec 19, 2025

eMASSer is a command-line interface (CLI) that aims to automate routine business use-cases and provide utility surrounding the Enterprise Mission Assurance Support Service (eMASS) by leveraging its…

Ruby 46 13 Updated Dec 15, 2025
Python 12 4 Updated Jul 14, 2023

🚨ATTENTION🚨 The Security Stack Mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here as an archive.

Python 390 62 Updated Apr 3, 2024

Joint OMB and CISA homepage for a government-wide effort to move the U.S. government towards zero trust cybersecurity principles.

JavaScript 10 3 Updated Jul 28, 2022

An attempt at creating a unifying Threat Model Definition Language using a declarative syntax with cuelang

9 2 Updated Sep 5, 2021

Python library for reading/writing compliance as code

Python 11 5 Updated Nov 29, 2023

Automate the creation of a System Security Plan (SSP)

Jinja 43 17 Updated Dec 6, 2025

Publish a machine readable version of the ARS standards to facilitate compliance as code efforts.

XSLT 23 4 Updated Feb 26, 2024

A curated list of OPA related tools, frameworks and articles

854 81 Updated Sep 16, 2025

💀 Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh

Python 3,553 461 Updated Nov 14, 2025

This project is about creating and publishing threat model examples.

Python 429 73 Updated Nov 10, 2021

A collaborative platform for reproducible research (web interface and CLI).

Python 166 83 Updated May 27, 2025

Serverless Workshop

Python 16 7 Updated Dec 8, 2022

Rapid ATO website content focused on demystifying security & compliance at CMS.

JavaScript 2 3 Updated Jul 10, 2023

MIGRATED: A Typescript Library for working with InSpec data

TypeScript 6 4 Updated Jul 29, 2024

A list of public penetration test reports published by several consulting firms and academic security groups.

HTML 9,288 2,122 Updated Nov 24, 2025

Extensible Validation Reporting Language

XSLT 11 5 Updated May 2, 2025

A collection of design patterns/idioms in Python

Python 42,561 7,059 Updated Nov 25, 2025

Add Google Cloud Platform support to Terraform

Go 910 2,087 Updated Dec 20, 2025

Sample templates for AWS Proton

283 453 Updated Dec 13, 2023

Bugcrowd’s baseline priority ratings for common security vulnerabilities

Python 504 111 Updated Aug 18, 2025

LuLu is the free open-source macOS firewall

Objective-C 11,670 536 Updated Nov 20, 2025

SolarWinds Orion Account Audit / Password Dumping Utility

C# 356 48 Updated Oct 9, 2023

This repo contains all the injections mentioned in my talk and enumerators.

JavaScript 134 28 Updated Dec 1, 2023

Learn to create a desktop app with Python and Qt

Python 2,556 596 Updated Jan 7, 2025
Next