Checkmarx / kics
Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.
☆2,095Updated this week
Related projects ⓘ
Alternatives and complementary repositories for kics
- OpenClarity is an open source tool built to enhance security and observability of cloud native applications and infrastructure☆1,350Updated this week
- Tfsec is now part of Trivy☆6,718Updated last month
- Security risk analysis for Kubernetes resources☆1,240Updated this week
- Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependenci…☆808Updated last year
- Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.☆4,767Updated last week
- A Blazing fast Security Auditing tool for Kubernetes☆991Updated 7 months ago
- Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes se…☆962Updated 2 months ago
- Moved to https://github.com/aquasecurity/trivy-operator☆1,354Updated 2 weeks ago
- ☆494Updated this week
- A tool to scan Kubernetes cluster for risky permissions☆1,323Updated last week
- Hunt for security weaknesses in Kubernetes clusters☆4,764Updated 8 months ago
- Kubernetes-native security toolkit☆1,281Updated this week
- A service that analyzes docker images and scans for vulnerabilities☆1,587Updated last year
- Kubernetes Security Training Platform - focusing on security mitigation☆932Updated 2 months ago
- An open-source tool for auditing your software supply chain stack for security compliance based on a new CIS Software Supply Chain benchm…☆728Updated 4 months ago
- Runs Trivy as GitHub action to scan your Docker container image for vulnerabilities☆832Updated this week
- A tool for quickly evaluating IAM permissions in AWS.☆1,433Updated 3 months ago
- A curated list of awesome Kubernetes security resources☆905Updated 11 months ago
- Write tests against structured configuration data using the Open Policy Agent Rego query language☆2,877Updated last week
- The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.☆848Updated 4 months ago
- Peirates - Kubernetes Penetration Testing tool☆1,243Updated last month
- Kubernetes object analysis with recommendations for improved reliability and security. kube-score actively prevents downtime and bugs in …☆2,789Updated last week
- Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets☆775Updated last week
- Multi-Cloud Security Auditing Tool☆6,740Updated last month
- Runs checks to see if an EKS cluster follows EKS Best Practices.☆862Updated this week
- Code signing and transparency for containers and binaries☆4,516Updated this week