<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Devsecops on Jesus Oseguera</title><link>https://r0tbyt3.dev/tags/devsecops/</link><description>Recent content in Devsecops on Jesus Oseguera</description><generator>Hugo</generator><language>en-us</language><atom:link href="https://r0tbyt3.dev/tags/devsecops/index.xml" rel="self" type="application/rss+xml"/><item><title>API Security</title><link>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/api-security/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/api-security/</guid><description>API Security API Security - securing APIs in CI/CD pipelines through authentication, rate limiting, input validation, and automated scanning.
Related Links: Arachni Dynamic application security testing (DAST) Nikto Pipeline Security Shift Left Security Software composition analysis (SCA) Static application security testing (SAST) W3af</description></item><item><title>Arachni</title><link>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/arachni/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/arachni/</guid><description>Arachni Arachni - open-source web application security scanner used for automated vulnerability discovery.
Related Links: API Security Dynamic application security testing (DAST) Nikto Pipeline Security Shift Left Security Software composition analysis (SCA) Static application security testing (SAST) W3af</description></item><item><title>DevSecOps</title><link>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/</guid><description>DevSecOps DevSecOps - integrating security into every phase of the CI/CD pipeline through automated testing and tooling.
API Security Arachni Dynamic application security testing (DAST) Nikto Pipeline Security Shift Left Security Software composition analysis (SCA) Static application security testing (SAST) W3af Related Links: DevOps Fundamentals Pipeline and Delivery</description></item><item><title>Dynamic application security testing (DAST)</title><link>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/dynamic-application-security-testing-dast/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/dynamic-application-security-testing-dast/</guid><description>Dynamic application security testing (DAST) DAST - testing running applications by simulating attacks to find runtime vulnerabilities in a live environment.
Related Links: API Security Arachni Nikto Pipeline Security Shift Left Security Software composition analysis (SCA) Static application security testing (SAST) W3af</description></item><item><title>Nikto</title><link>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/nikto/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/nikto/</guid><description>Nikto Nikto - open-source web server scanner that detects dangerous files, outdated software, and server misconfigurations.
Related Links: API Security Arachni Dynamic application security testing (DAST) Pipeline Security Shift Left Security Software composition analysis (SCA) Static application security testing (SAST) W3af</description></item><item><title>Pipeline Security</title><link>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/pipeline-security/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/pipeline-security/</guid><description>Pipeline Security Pipeline Security - securing the CI/CD supply chain through secret management, artifact signing, and dependency scanning.
Related Links: API Security Arachni Dynamic application security testing (DAST) Nikto Shift Left Security Software composition analysis (SCA) Static application security testing (SAST) W3af</description></item><item><title>Shift Left Security</title><link>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/shift-left-security/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/shift-left-security/</guid><description>Shift Left Security Shift Left Security - embedding security checks early in development and CI/CD to catch vulnerabilities before production.
Related Links: API Security Arachni Dynamic application security testing (DAST) Nikto Pipeline Security Software composition analysis (SCA) Static application security testing (SAST) W3af</description></item><item><title>Software composition analysis (SCA)</title><link>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/software-composition-analysis-sca/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/software-composition-analysis-sca/</guid><description>Software composition analysis (SCA) SCA - identifying open-source dependencies and known vulnerabilities in application code and third-party libraries.
Related Links: API Security Arachni Dynamic application security testing (DAST) Nikto Pipeline Security Shift Left Security Static application security testing (SAST) W3af</description></item><item><title>Static application security testing (SAST)</title><link>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/static-application-security-testing-sast/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/static-application-security-testing-sast/</guid><description>Static application security testing (SAST) SAST - analyzing source code without execution to detect security vulnerabilities early in the development process.
Related Links: API Security Arachni Dynamic application security testing (DAST) Nikto Pipeline Security Shift Left Security Software composition analysis (SCA) W3af</description></item><item><title>W3af</title><link>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/w3af/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://r0tbyt3.dev/wiki/content/devops-and-platform-engineering/ci-cd/devsecops/w3af/</guid><description>W3af W3af - open-source web application attack and audit framework for discovering and exploiting web vulnerabilities.
Related Links: API Security Arachni Dynamic application security testing (DAST) Nikto Pipeline Security Shift Left Security Software composition analysis (SCA) Static application security testing (SAST)</description></item></channel></rss>