SDA-SE / cluster-image-scanner
Discover vulnerabilities and container image misconfiguration in production environments.
☆53Updated 2 months ago
Related projects ⓘ
Alternatives and complementary repositories for cluster-image-scanner
- a tool to audit the istio service mesh☆173Updated 3 years ago
- Kubernetes Pwnage for all☆54Updated 4 years ago
- A utility to (re-)import findings and language data into DefectDojo☆42Updated last month
- Protect against subdomain takeover☆92Updated 5 months ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆59Updated 8 months ago
- The security workflow engine!☆73Updated this week
- This Repository contains the stable beta preview of the next major secureCodeBox (SCB) release v2.0.0.☆24Updated 4 years ago
- OWASP Kubernetes Security Testing Guide☆37Updated 2 months ago
- ☆91Updated 6 months ago
- OWASP Kubernetes security and compliance tool [WIP]☆104Updated last year
- Clean accounts over permissions in GCP infra at scale☆71Updated last year
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.☆160Updated last year
- Curating Falco rules with MITRE ATT&CK Matrix☆74Updated 8 months ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆55Updated 4 months ago
- An implementation of infrastructure-as-code scanning using dynamic tooling.☆56Updated 2 years ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆169Updated 9 months ago
- Kubernetes audit logging, when you don't control the control plane☆65Updated this week
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆66Updated 11 months ago
- WAF bypass PoC☆43Updated last year
- ☆137Updated 2 weeks ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆57Updated last year
- Lightspin AWS IAM Vulnerability Scanner☆96Updated 3 years ago
- Awesome resources about Security in Kubernetes☆40Updated last year
- ☆168Updated last month
- Dynamic Application and API Security Testing☆190Updated last year
- Reference architecture and proof of concept implementation for supply chain security gateway☆23Updated last year
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆65Updated last year
- A deliberately vulnerable Kubernetes cluster☆118Updated 11 months ago