
trivy
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

A collection of challenge based hack-a-thons including student guide, coach guide, lecture presentations, sample/instructional code and templates. …

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

Secure and fast microVMs for serverless computing.

Open-source IoT Platform - Device management, data collection, processing and visualization.

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

eBPF-powered network observability for Kubernetes. Indexes L4/L7 traffic with full K8s context, decrypts TLS without keys. Queryable by AI agents via…

Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel…

A Chaos Engineering Platform for Kubernetes.

Multi-cloud security auditing tool that leverages cloud provider APIs to gather configuration data, assess security posture, and generate HTML…

CloudMapper helps you analyze your Amazon Web Services (AWS) environments.

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf,…

Infrastructure as code for DNS!

An open source real-time network topology and protocols analyzer

A collection of Azure AD/Entra tools for offensive and defensive security purposes

☁️ ⚡ Granular, Actionable Adversary Emulation for the Cloud

AWSGoat : A Damn Vulnerable AWS Infrastructure