aquasecurity / bench-commonLinks
Common code for hardening benchmarks
☆11Updated this week
Alternatives and similar repositories for bench-common
Users that are interested in bench-common are comparing it to the libraries listed below
Sorting:
- Trivy kubernetes library☆37Updated last week
- Evolution process of The Falco Project☆53Updated this week
- Manage AppAmormor profiles for Kubernetes cluster☆41Updated last year
- Administrative tooling for Falco☆108Updated last week
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆65Updated last week
- Integrates Spiffe and Vault to have secretless authentication☆90Updated 2 weeks ago
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆66Updated this week
- 🔍 Rekor transparency log monitoring and alerting☆27Updated last year
- agent for handling seccomp descriptors for container runtimes☆47Updated last year
- Kubernetes Pod Security Standards implementation - https://github.com/kubernetes/enhancements/blob/master/keps/sig-auth/2579-psp-replacem…☆101Updated this week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆63Updated this week
- sigstore the hard way!☆115Updated last year
- a tool to audit the istio service mesh☆173Updated 3 years ago
- Runtime security plug to protect user containers☆65Updated last week
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆136Updated last week
- Kubevuln is an in-cluster component of the Kubescape security platform. It scans container images for vulnerabilities, using Grype as its…☆24Updated last week
- Generate a variety of suspect actions that are detected by Falco rulesets☆106Updated last month
- Cloud Native Security Hub - Security Resources☆54Updated 5 years ago
- Security configuration checks for popular cloud native applications and infrastructure.☆118Updated 3 years ago
- Diagrams to visually learn Falco and its eBPF probe☆14Updated 4 years ago
- This is just a proof-of-concept project that aims to sign and verify container images using cosign and OPA (Open Policy Agent)☆62Updated 3 years ago
- Slack alert bot for matching Github Audit Events☆10Updated 8 months ago
- Falco plugins registry☆98Updated this week
- Kit for building Falco drivers: kernel modules or eBPF probes☆65Updated 2 weeks ago
- Simple tool that allows you to detect imposter commits in GitHub Actions workflows.☆23Updated 7 months ago
- Kubernetes Common Configuration Scoring System☆123Updated 3 years ago
- Harbor Scanner Adapter for Anchore Engine and Enterprise☆39Updated this week
- ☆100Updated 2 months ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated last month
- Check images in your charts for vulnerabilities☆41Updated 2 weeks ago