
open-sammy
Web-based tool for assessing and tracking software security maturity using the OWASP SAMM and DSOMM models, with Docker support and automated mailing.

Web-based tool for assessing and tracking software security maturity using the OWASP SAMM and DSOMM models, with Docker support and automated mailing.

A tool to scan Kubernetes cluster for risky permissions

The only open-source tool to analyze vulnerabilities and configuration issues with running docker container(s) and docker networks.

Pentester-focused Docker registry tool to enumerate and pull images

A tool to reverse engineer and inspect the RPM and APT databases to list all the packages along with executables, service, versions and CVE.

A minimal test tool to help detect annotation injection vulnerabilities in Kubernetes NGINX Ingress controllers. This script sends a crafted…

Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…

Integration of Clair and Docker Registry

Public OCI-Image (docker image) Security Checker






cve-2015-3306


cve-2018-9208
