
kube-score
Static code analysis tool for Kubernetes object definitions that scores YAML/Helm charts for security, reliability, and best practices, with CI/CD…

Static code analysis tool for Kubernetes object definitions that scores YAML/Helm charts for security, reliability, and best practices, with CI/CD…

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

Runtime behavioral analysis tool that sandboxes suspicious packages in Docker, traces syscalls with strace, maps process cascades into directed…

Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

A container analysis and exploitation tool for pentesters and engineers.

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and…

Multi-language SAST tool that scans source code, Git history, and IaC for security flaws, secrets, and misconfigurations, integrating into CI/CD…

Docker container for CVE-2018-16283, part of a managed vulnerable Docker environment for practicing exploitation and vulnerability analysis.

Next-generation dependency vulnerability scanner with reachability analysis, SBOM generation, license audit, and container image scanning for CI/CD…

Docker container providing a vulnerable environment for CVE-2014-6271 (Shellshock) to practice exploitation and vulnerability analysis in a…

Pre-built vulnerable Docker container (CVE-UNASSIGNED-1) for hands-on security training, exploitation practice, and vulnerability analysis in a…

Docker container providing a vulnerable environment for CVE-2018-19207, designed for practicing exploitation and vulnerability analysis in a…

Agentless platform for discovering and managing VM security threats including vulnerabilities, malware, rootkits, misconfigurations, leaked secrets,…

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Security-first wire protocol for agent coordination with mandatory mTLS, Ed25519-signed capability cards, Keycloak authentication, and per-call…

The easiest, and most secure way to access and protect all of your infrastructure.

Zero-trust networking platform that makes services invisible with cryptographic identity, policy-based access, and end-to-end encryption. Replaces…