MaibornWolff / SecObserve
SecObserve is an open source vulnerability and license management system for software development teams and cloud environments. It supports a variety of open source vulnerability scanners and integrates easily into CI/CD pipelines.
☆109Updated this week
Alternatives and similar repositories for SecObserve:
Users that are interested in SecObserve are comparing it to the libraries listed below
- boostsecurityio/poutine☆243Updated last week
- A utility to (re-)import findings and language data into DefectDojo☆42Updated 3 months ago
- YouShallNotPass brings an added level of execution security to mission-critical CI/CD Systems.☆36Updated last year
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆266Updated last month
- 🧰 Multi Tool Kubernetes Pentest Image☆218Updated 4 months ago
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆61Updated last year
- Validate the isolation posture of your container environment.☆227Updated this week
- Web application that allows to load a Trivy report in json format and displays the vulnerabilities of a single target in an interactive d…☆119Updated this week
- OWASP Kubernetes security and compliance tool [WIP]☆105Updated last year
- The security workflow engine!☆91Updated this week
- Incubating project for decoupling responsibilities from Dependency-Track's monolithic API server into separate, scalable services.☆65Updated this week
- An open-source collection of API key rotation tutorials.☆63Updated last month
- Curating Falco rules with MITRE ATT&CK Matrix☆77Updated 10 months ago
- A tool for preventing the installation of malicious PyPI and npm packages☆108Updated last month
- A tool to create, transform and attest VEX metadata☆125Updated this week
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆77Updated 2 weeks ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆66Updated last year
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆82Updated this week
- VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities☆101Updated 3 months ago
- Enrich SBOMs with data from third party services☆151Updated last week
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆35Updated 4 months ago
- BadRobot - Operator Security Audit Tool☆216Updated this week
- AWS honey token manager☆86Updated 5 months ago
- ☆171Updated last month
- Generate a score for your sbom to understand if it will actually be useful.☆224Updated 5 months ago
- Sunshine - SBOM visualization tool☆28Updated this week
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆130Updated 11 months ago
- HashiCorp-relevant rules for the Semgrep code analysis tool☆38Updated last year
- SBOM quality score - Quality metrics for your sboms☆192Updated this week
- Publishes BOMs to Dependency-Track from GitHub Actions☆48Updated 3 months ago