
docker-bench-security
The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.

The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.

A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using…


Validation of best practices in your Kubernetes clusters

An enterprise friendly way of detecting and preventing secrets in code.

A collection of challenge based hack-a-thons including student guide, coach guide, lecture presentations, sample/instructional code and templates. …

Elkeid is an open source solution that can meet the security requirements of various workloads such as hosts, containers and K8s, and serverless. It…

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

The StackRox Kubernetes Security Platform performs a risk analysis of the container environment, delivers visibility and runtime alerts, and provides…

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

Integration of Clair and Docker Registry

Collection of Semgrep rules for static code analysis, detecting security vulnerabilities, and enforcing secure coding practices across multiple…

Trail of Bits Testing Handbook - appsec.guide

Dow Jones Hammer : Protect the cloud with the power of the cloud(AWS)

Scans Software Bill of Materials (SBOMs) for security vulnerabilities

The globalping probe code that runs on your hardware and connects to the global community network of probes

🛡️Awesome lists about all kinds of interesting topics of Wazuh XDR/SIEM

Repo to hold mapping of user-security-stories