
bitbucket-iac-scan
Scans Infrastructure as Code files for security misconfigurations and vulnerabilities using KICS, with Bitbucket Code Insights reporting.
cloud-infrastructure-securitycode-analysisconfiguration-auditing+5

Scans Infrastructure as Code files for security misconfigurations and vulnerabilities using KICS, with Bitbucket Code Insights reporting.

general purpose workaround for the log4j CVE-2021-44228 vulnerability

Open Cloud Security Posture Management Engine

AI coding agents that can't exfiltrate secrets or merge their own PRs.

Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).

ClusterImagePolicy demo for cve-2022-42889 text4shell