
grype
A vulnerability scanner for container images and filesystems

A vulnerability scanner for container images and filesystems

Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

Ghidra is a software reverse engineering (SRE) framework

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Protect against malicious open source packages 🤖

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.

Vulnerability Static Analysis for Containers

A project security/vulnerability/risk scanning tool

Trivy example module for WordPress

A Public Package Scanner for The Community

A service that analyzes docker images and scans for vulnerabilities

Detections for CVE-2021-44228 inside of nested binaries

CLI tool that verifies Docker images for CVE-2018-8115 by checking layers for malicious files, helping ensure safe pulls from Docker Hub.