
iac-scan-runner
Service that scans your Infrastructure as Code for common vulnerabilities

Service that scans your Infrastructure as Code for common vulnerabilities

Linux 内核升级指南 - 修复 CVE-2026-64561

Linux 内核升级指南 - 修复 CVE-2026-53359

Suppress vulnerabilities applying Kubernetes context to scans

Simple Ansible Playbook to mitigate against CopyFail (CVE-2026-31431) and DirtyFrag (CVE-2026-43284) vulnerabilities.

Data pipelines for cloud config and security data. Build cloud asset inventory, CSPM, FinOps, and vulnerability management solutions. Extract from…

Static analysis security rules for vulnerability detection and audit-focused code review across Java, Go, Python, C#, Kotlin, PHP, Kubernetes, and…

Script to apply official workaround for VMware vCenter log4j vulnerability CVE-2021-44228

Complete fix collection for the CVE-2026-53359 guest-to-host escape vulnerability in the KVM/x86 shadow MMU. From zero-downtime livepatch to kernel…

Exploit KVM/x86 guest-to-host escape CVE-2026-64561 with Zapscape, a proof-of-concept demonstrating hypervisor vulnerability.

Automated deployment of OWASP Juice Shop on Kubernetes using kubeadm and Terraform, with integrated Trivy vulnerability scanning for DevSecOps…

Reference analysis of a Linux kernel Open vSwitch memory-corruption vulnerability, covering root cause, impact, detection commands, and mitigation…

OpenSSL Heartbleed (CVE-2014-0160) vulnerability scanner.

End-to-end vulnerability management lifecycle on Azure Windows Server 2025. Features OS patching and network-level compensating controls (NSG) to…

Chef cookbook that will fail if bash vulnerability found per CVE-2014-6271

Apache Hadoop YARN ResourceManager - Unauthenticated RCE PoC

Script - Workaround instructions to address CVE-2021-44228 in vCenter Server
