
cved
A tool to manage vulnerable docker containers

A tool to manage vulnerable docker containers
This is a proactive tool for security auditing. For your GitHub repository, you’ll want a description that highlights its safety (non-intrusive) and…

A passive detection tool for identifying potential exposure to CVE-2026-24061 in GNU inetutils telnet installations

Scan and patch tool for CVE-2021-44228 and related log4j concerns.

A powerful testing tool for Kubernetes clusters.

Linting tool for CloudFormation templates

A Python library to parse, validate and create SPDX documents.

Protects software supply chain integrity by verifying each step is performed by authorized functionaries, using signed layout and link metadata.

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Authorization engine for context-aware access control with YAML policies, RBAC/ABAC support, check/plan APIs, and GitOps-friendly deployment.

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

CLI for generating, analyzing, merging, diffing, validating, signing, and converting CycloneDX SBOMs across JSON, XML, Protobuf, CSV, and SPDX…

Chaos testing, network emulation, and stress testing tool for containers

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Ansible Playbook for CVE-2023-36845(Juniper Networks Junos OS 远程代码执行漏洞)

Find the plaintext secrets on your Mac and move them behind Touch ID, injected just in time without breaking the tools that read them. Free and…