How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.
Gato-X is a FAST scanning and attack tool for GitHub Actions pipelines. You can use it to identify Pwn Requests, Actions Injection, TOCTOU Vulnerabilities, and Self-Hosted Runner takeover at scale using just a single API token. It will also analyze cross-repository workflows and reusable…
The main features of adnanekhan/gato-x are: Attack and Audit Toolkits.
Projects with overlapping indexed features include: accenture/jenkins-attack-framework — Jenkins Attack Framework. arthaud/git-dumper. mazen160/secrets-patterns-db — The largest open-source database for detecting secrets, API keys, passwords, tokens, and more. Use secrets-patterns-db… mxrch/gitfive — GitFive is an OSINT tool to investigate GitHub profiles. praetorian-inc/gato — GitHub Actions Pipeline Enumeration and Attack Tool. synacktiv/nord-stream — Nord Stream is a tool that allows you extract secrets stored inside CI/CD environments by deploying malicious pipelines.
The largest open-source database for detecting secrets, API keys, passwords, tokens, and more. Use secrets-patterns-db to feed your secret scanning engine with regex patterns for identifying secrets.
GitFive is an OSINT tool to investigate GitHub profiles.