• Stars
    star
    24
  • Rank 986,245 (Top 20 %)
  • Language
    Java
  • License
    Other
  • Created about 4 years ago
  • Updated 5 months ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

Export Fortify vulnerability data to GitHub, GitLab, SonarQube and more

More Repositories

1

fcli

fcli is a command-line utility for interacting with various Fortify products
Java
31
star
2

WebInspectAutomation

Sample Python script for automating WebInspect scans and pushing results to SSC
Python
21
star
3

gha-setup-scancentral-client

Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead
TypeScript
18
star
4

ssc-restapi-client

Communicate with Fortify Software Security Center through REST API in java, a swagger generated client
17
star
5

gha-setup-fod-uploader

Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead
TypeScript
13
star
6

sample-parser

Example of a plugin that can parse non-Fortify security scan results and import them into Fortify Software Security Center.
10
star
7

ssc-js-sandbox

Fortify Software Security JavaScript sandbox
JavaScript
10
star
8

CloudDevSecOpsTemplates

Templates to integrate Fortify application security testing with Amazon Web Services (AWS), Azure, Google Cloud Platform (GCP) and Oracle Cloud Infrastructure (OCI)
Shell
10
star
9

github-action

Fortify GitHub Actions
TypeScript
10
star
10

helm3-charts

Fortify Helm Charts to automate deployment of Software Security Center (SSC), ScanCentral SAST and ScanCentral DAST to a Kubernetes
Smarty
9
star
11

fortify.github.io

HTML
7
star
12

gha-export-vulnerabilities

Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead
TypeScript
5
star
13

plugin-api

Plugin API to develop plugin for Fortify Security Center
Java
5
star
14

IWA-DotNet

Insecure Web Application - .NET version
C#
4
star
15

fortify-ssc-parser-sarif

SSC parser plugin for SARIF input files
Java
4
star
16

fortify-client-api

Java Utility packages for working with various Fortify products
Java
4
star
17

riches

Java
3
star
18

FortifySyncFoDToSSC

Utility to synchronize FoD releases and scan results to SSC
Java
3
star
19

fortify-ssc-parser-burp

Fortify SSC Parser Plugin for BURP Suite
Java
3
star
20

FortifyToolsInstaller

Deprecated; please use 'fcli tool * install' commands provided by fcli (https://github.com/fortify-ps/fcli) instead
Shell
3
star
21

fortify-ssc-parser-owasp-dependency-check

Fortify SSC Parser Plugin for OWASP Dependency Check results
Java
3
star
22

gha-fod-generate-sarif

Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead
TypeScript
2
star
23

fortify-ssc-parser-tenable-io-cs

Fortify SSC Parser Plugin for Tenable.io Container Security results
Java
2
star
24

gha-ssc-generate-sarif

Deprecated; please use https://github.com/marketplace/actions/fortify-ast-scan instead
2
star
25

fortify-ssc-parser-util

Generic utility classes for implementing SSC parser plugins
Java
2
star
26

IWA-Java

Insecure Web + API application with example Fortify integrations into many DevSecOps and CICD platforms
Java
2
star
27

bsi-token-parser-kt

Kotlin Library for parsing BSI Tokens from Fortify on Demand
Kotlin
1
star
28

shared-doc-resources

Shell
1
star
29

gha-fod-download-fpr

Proof of Concept: GitHub Action for downloading an FPR file from Fortify on Demand (FoD)
TypeScript
1
star
30

ScanCentralDAST

Samples which can be leveraged with Fortify's ScanCentral DAST solution (20.2+)
1
star
31

tool-definitions

TypeScript
1
star
32

shared-gradle-helpers

Various Gradle helper scripts
JavaScript
1
star
33

fortify-ssc-parser-generic-cyclonedx

Generic Fortify SSC parser plugin for CycloneDX SBOM. For Debricked, please use the Debricked-branded plugin available at https://github.com/fortify/fortify-ssc-parser-debricked-cyclonedx
Shell
1
star
34

audit-assistant-helm-charts

Helm charts for Audit Assistant
1
star
35

fortify-ssc-parser-debricked-cyclonedx

Fortify SSC parser plugin to import Debricked SCA results for unified AppSec posture management
Shell
1
star
36

gha-fpr-to-sarif

Proof of Concept: GitHub Action to convert Fortify FPR files to SARIF format
TypeScript
1
star
37

sample-scala

Simple example showing how Fortify scanning can be performed in Scala applications built with Maven (using the "scala-maven-plugin" from https://github.com/davidB/) or Gradle.
Scala
1
star
38

gha-sample-workflows-WebGoat.NET

Sample GitHub Action workflows based on the OWASP WebGoat.NET example
C#
1
star