
trivy
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Validation of best practices in your Kubernetes clusters

Hunt for security weaknesses in Kubernetes clusters

A tool for quickly evaluating IAM permissions in AWS.

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

A graph-based tool for visualizing effective access and resource relationships in AWS environments.

Discover resources created in an AWS account.

Find exposed data in Azure with this public blob scanner

Rootless container runtime and sandbox that launches kernel-enforced OCI images in milliseconds with no daemon, featuring resource profiles, seccomp…

Powerful open-source CLI to audit security, costs, and best practices in AWS. 🩺 ☁️

BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for custom…

CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

SkyWrapper helps to discover suspicious creation forms and uses of temporary tokens in AWS

Event-driven AWS security misconfiguration detection framework that monitors multiple accounts in real-time, triggering alerts via Lambda for IAM,…

An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.