www.hack23.com
We are an organization dedicated to the development of secure open-source software applications and tools. Our mission is to enhance transparency and security in the digital world.
Hack23 is led byJames Pether Sörling, an experienced technology professional with expertise in information security and delivery of secure cloud systems. He is a strong advocate for transparency in organizations and is committed to ensuring the security and reliability of our open-source projects through the use of industry best practices such asOpenSSF andCII Best Practices.
James has given talks at various forums, includingJavaforum Göteborg, where he discussed how to secure your development pipeline with static and dynamic application security tests, as well as software composition analysis using Sonarqube. He was also a guest on theShift Left Like A Boss security podcast, where he discussed open-source tools that can make high-velocity development more secure.
Visit ourWebsite
Connect with James onLinkedIn
Hack23 and its projects have been featured in various media outlets:
- Computer Sweden - This article highlights the innovative use of technology in revealing the activities of politicians.
- Riksdag och Departement - A Swedish publication that discusses the role of Citizen Intelligence Agency in monitoring politicians.
- Expressen - An opinion piece that addresses the issue of political absenteeism.
- National Democratic Institute: Strengthening Parliamentary Accountability, Citizen Engagement and Access to Information - A comprehensive survey report that underscores the importance of parliamentary monitoring organizations in Sweden.
The Citizen Intelligence Agency is a volunteer-driven, open-source intelligence (OSINT) project that provides a neutral and comprehensive dashboard focusing on political activity in Sweden. The platform offers valuable insights into financial performance, risk metrics, and political trends, and features a ranking system for objective comparison of politicians based on performance.
Data Sources:
- Swedish Parliament Open Data: This comprehensive database provides a wealth of information related to the Swedish Parliament. It includes data on parliamentary members, committees, and documents, offering a deep dive into the workings of Sweden's legislative body.
- Swedish Election Authority: This authoritative source provides detailed information on election processes, results, and political parties in Sweden.
- World Bank Open Data: This global database contains a vast array of development data, including economic indicators and demographic information. It's a valuable resource for understanding global trends and comparing Sweden's performance on various metrics with other countries.
- Swedish National Financial Management Authority (ESV) Public Sector Information (PSI) Data: This data source offers in-depth information on government finances, economic trends, and public sector operations in Sweden. It's a crucial resource for anyone interested in understanding the financial workings of the Swedish government.
Explore ourCitizen Intelligence Agency's Architecture Overview, where you can dive into the detailed structure of our project. This page provides a comprehensive look at our project's system context, its various components, and the deployment strategy. It also includes guides for developers and database administrators, making it a valuable resource for understanding the mechanics of our work.
The Sonar-CloudFormation-Plugin is a plugin forSonarQube that allows users to analyzeCloudFormation templates written in YAML or JSON. The plugin uses the SonarQube API to perform code analysis on the templates and generate detailed reports on best practices, potential security issues, and other code quality metrics. The plugin integrates withcfn-nag andCheckov to provide additional security checks based on theCWE,NIST 800-53, andISO 27001 standards.
The Lambda in Private VPC is a proof-of-concept (POC) showcasing a multi-region active/active site leveraging Resilience Hub policy compliance and runbooks to facilitate rapid recovery from failures.
Concepts:Learn more about AWS Resilience Hub concepts and understand the key terms and principles involved in building resilient applicationshere.
Runbooks:
- DynamoDB Runbook - Automates the management of DynamoDB tables and indexes.
- Lambda Runbook - Helps manage Lambda functions, layers, and aliases.
- Application Bridge Runbook - Supports management of Amazon App Runner services and custom domains.
- IAM Runbook - Facilitates IAM user, group, role, and policy managem
We welcome contributions from the community! If you're interested in contributing, check out our repositories and feel free to submit issues or pull requests. Let's work together to make the digital world more secure and transparent!
For more information about Hack23, our projects, or if you have any questions, please feel free to contact us.
PinnedLoading
- sonar-cloudformation-plugin
sonar-cloudformation-plugin Public archiveSonarqube cloudformation plugin, IaC security supports cfn-nag/checkov
Repositories
- cia-compliance-manager Public
The CIA Compliance Manager is an application that helps organizations assess and manage the availability, integrity, and confidentiality of their systems and data based on customizable security levels, providing real-time cost estimates, business impact assessments, and technical implementation details.
Hack23/cia-compliance-manager’s past year of commit activity - cia Public
Comprehensive open-source intelligence platform analyzing Swedish political activities using AI and data visualization. Tracks politicians, government institutions, and parliamentary data, offering detailed insights, performance metrics, and advanced analytics.
Hack23/cia’s past year of commit activity - lambda-in-private-vpc Public
A highly available system that runs in multiple AWS regions at the same time. It uses AWS Resilience Hub to ensure compliance with policies for Recovery Time Objective (RTO) and Recovery Point Objective (RPO)
Hack23/lambda-in-private-vpc’s past year of commit activity - sonar-cloudformation-plugin Public archive
Sonarqube cloudformation plugin, IaC security supports cfn-nag/checkov
Hack23/sonar-cloudformation-plugin’s past year of commit activity - ciamavenrepo Public archive
Hack23/ciamavenrepo’s past year of commit activity - templateopensource Public template
template for creation of open source project following community stanards and OpenSSF
Hack23/templateopensource’s past year of commit activity - riksdagsmonitor Public archive
Hack23/riksdagsmonitor’s past year of commit activity