Skip to content
@Checkmarx

Checkmarx

Pinned

  1. kics Public

    Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

    Open Policy Agent 1.7k 262

  2. 2ms Public

    Too many secrets (2MS) helps people protect their secrets on any file or on systems like CMS, chats and git

    Go 43 13

  3. capital Public

    A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Security vulnerabilities within your own API Security CTF.

    CSS 247 47

  4. If you are using a CI/CD platform that doesn’t yet have a dedicated Checkmarx plugin, please check this repository.

    Groovy 5 14

Repositories

Showing 10 of 41 repositories
  • kics Public

    Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

    Open Policy Agent 1,683 Apache-2.0 262 102 75 Updated Sep 2, 2023
  • ast-cli Public

    A CLI project wrapping application security testing (AST) APIs

    Go 29 Apache-2.0 20 2 5 Updated Sep 1, 2023
  • 2ms Public

    Too many secrets (2MS) helps people protect their secrets on any file or on systems like CMS, chats and git

    Go 43 Apache-2.0 13 20 (8 issues need help) 5 Updated Aug 31, 2023
  • ast-visual-studio-extension Public

    The CxAST Visual Studio plugin enables you to import results from a CxAST scan directly into your IDE

    C# 3 Apache-2.0 4 0 0 Updated Aug 30, 2023
  • overlay Public

    Overlay is a browser extension helping developers evaluate open source packages before picking them

    JavaScript 1 MIT 14 0 0 Updated Aug 30, 2023
  • ast-azure-plugin Public

    The CxAST Azure DevOps plugin enables you to trigger SAST, SCA, and KICS scans directly from an Azure DevOps pipeline.

    TypeScript 2 Apache-2.0 2 0 1 Updated Aug 29, 2023
  • ast-vscode-extension Public

    The Checkmarx One Visual Studio Code plugin (extension) enables you to import results from a Checkmarx One scan directly into your VS Code console. You can view the vulnerabilities that were identified in your source code and navigate directly to the vulnerable code in the editor.

    Hack 10 Apache-2.0 5 2 1 Updated Aug 28, 2023
  • ast-jetbrains-plugin Public

    The CxAST JetBrains plugin enables you to import results from a CxAST scan directly into your IDE.

    Java 3 Apache-2.0 3 0 0 Updated Aug 28, 2023
  • ast-teamcity-plugin Public

    The CxAST TeamCity plugin enables you to trigger SAST, SCA, and KICS scans directly from a TeamCity project.

    Java 3 Apache-2.0 1 1 1 Updated Aug 26, 2023
  • ast-github-action Public

    Checkmarx application security testing (AST) GitHub action

    Shell 9 Apache-2.0 21 5 1 Updated Aug 24, 2023

Most used topics

Loading…