[go: up one dir, main page]

Skip to content
@Hack23

www.hack23.com

Development of Secure Open Source Software Applications and Tools.

Welcome to Hack23! 👋

We are an organization dedicated to the development of secure open-source software applications and tools. Our mission is to enhance transparency and security in the digital world.

About Hack23 ℹ️

Hack23 is led by James Pether Sörling, an experienced technology professional with expertise in information security and delivery of secure cloud systems. He is a strong advocate for transparency in organizations and is committed to ensuring the security and reliability of our open-source projects through the use of industry best practices such as OpenSSF and CII Best Practices.

James has given talks at various forums, including Javaforum Göteborg, where he discussed how to secure your development pipeline with static and dynamic application security tests, as well as software composition analysis using Sonarqube. He was also a guest on the Shift Left Like A Boss security podcast, where he discussed open-source tools that can make high-velocity development more secure.

Visit our Website

Connect with James on LinkedIn

Press Coverage 📰

Hack23 and its projects have been featured in various media outlets:

Our Projects 🛠️

The Citizen Intelligence Agency is a volunteer-driven, open-source intelligence (OSINT) project that provides a neutral and comprehensive dashboard focusing on political activity in Sweden. The platform offers valuable insights into financial performance, risk metrics, and political trends, and features a ranking system for objective comparison of politicians based on performance.

Data Sources:

  • Swedish Parliament Open Data: This comprehensive database provides a wealth of information related to the Swedish Parliament. It includes data on parliamentary members, committees, and documents, offering a deep dive into the workings of Sweden's legislative body.
  • Swedish Election Authority: This authoritative source provides detailed information on election processes, results, and political parties in Sweden.
  • World Bank Open Data: This global database contains a vast array of development data, including economic indicators and demographic information. It's a valuable resource for understanding global trends and comparing Sweden's performance on various metrics with other countries.
  • Swedish National Financial Management Authority (ESV) Public Sector Information (PSI) Data: This data source offers in-depth information on government finances, economic trends, and public sector operations in Sweden. It's a crucial resource for anyone interested in understanding the financial workings of the Swedish government.

Explore our Citizen Intelligence Agency's Architecture Overview, where you can dive into the detailed structure of our project. This page provides a comprehensive look at our project's system context, its various components, and the deployment strategy. It also includes guides for developers and database administrators, making it a valuable resource for understanding the mechanics of our work.

The Sonar-CloudFormation-Plugin is a plugin for SonarQube that allows users to analyze CloudFormation templates written in YAML or JSON. The plugin uses the SonarQube API to perform code analysis on the templates and generate detailed reports on best practices, potential security issues, and other code quality metrics. The plugin integrates with cfn-nag and Checkov to provide additional security checks based on the CWE, NIST 800-53, and ISO 27001 standards.

The Lambda in Private VPC is a proof-of-concept (POC) showcasing a multi-region active/active site leveraging Resilience Hub policy compliance and runbooks to facilitate rapid recovery from failures.

Concepts: Learn more about AWS Resilience Hub concepts and understand the key terms and principles involved in building resilient applications here.

Runbooks:

Get Involved

We welcome contributions from the community! If you're interested in contributing, check out our repositories and feel free to submit issues or pull requests. Let's work together to make the digital world more secure and transparent!

Contact Us 📫

For more information about Hack23, our projects, or if you have any questions, please feel free to contact us.

Pinned Loading

  1. cia cia Public

    Citizen Intelligence Agency (OSINT) , monitoring key political figures and institutions, provides insights into financial performance, risk metrics, and political trends

    Java 154 47

  2. sonar-cloudformation-plugin sonar-cloudformation-plugin Public archive

    Sonarqube cloudformation plugin, IaC security supports cfn-nag/checkov

    Java 24 9

Repositories

Showing 10 of 11 repositories
  • cia Public

    Citizen Intelligence Agency (OSINT) , monitoring key political figures and institutions, provides insights into financial performance, risk metrics, and political trends

    Hack23/cia’s past year of commit activity
    Java 154 Apache-2.0 47 24 (5 issues need help) 0 Updated Nov 17, 2024
  • lambda-in-private-vpc Public

    Using vpc endpoints for all traffic

    Hack23/lambda-in-private-vpc’s past year of commit activity
    2 Apache-2.0 1 1 0 Updated Nov 15, 2024
  • homepage Public

    Webpage for org https://www.hack23.com/

    Hack23/homepage’s past year of commit activity
    HTML 1 Apache-2.0 1 1 0 Updated Nov 15, 2024
  • sonar-cloudformation-plugin Public archive

    Sonarqube cloudformation plugin, IaC security supports cfn-nag/checkov

    Hack23/sonar-cloudformation-plugin’s past year of commit activity
    Java 24 LGPL-3.0 9 1 5 Updated Oct 4, 2024
  • ciamavenrepo Public archive
    Hack23/ciamavenrepo’s past year of commit activity
    0 0 0 0 Updated Aug 2, 2024
  • .github Public archive
    Hack23/.github’s past year of commit activity
    1 0 0 0 Updated Oct 11, 2023
  • talks Public archive

    How to secure your development pipeline with static application security test (SAST) / Dynamic application security test (DAST), software composition analysis (SCA) using Sonarqube.

    Hack23/talks’s past year of commit activity
    5 0 1 1 Updated May 8, 2023
  • templateopensource Public template

    template for creation of open source project following community stanards and OpenSSF

    Hack23/templateopensource’s past year of commit activity
    1 Apache-2.0 0 0 0 Updated Jan 30, 2023
  • riksdagsmonitor Public archive
    Hack23/riksdagsmonitor’s past year of commit activity
    HTML 0 Apache-2.0 0 0 0 Updated Dec 26, 2022
  • securityfixerbot Public archive
    Hack23/securityfixerbot’s past year of commit activity
    TypeScript 0 ISC 0 0 0 Updated Apr 9, 2021