aquasecurity / bench-common
Common code for hardening benchmarks
☆11Updated 9 months ago
Related projects ⓘ
Alternatives and complementary repositories for bench-common
- Generate an application profile containing metrics/properties for Kubernetes workloads based on runtime behavior.☆14Updated last month
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆63Updated last week
- Transparenty Immutable Container Image Tags☆20Updated last year
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆123Updated this week
- Falco plugins registry☆86Updated this week
- Integrates Spiffe and Vault to have secretless authentication☆85Updated this week
- Trivy kubernetes library☆31Updated this week
- sigstore the hard way!☆110Updated 6 months ago
- Administrative tooling for Falco☆87Updated this week
- Manage AppAmormor profiles for Kubernetes cluster☆39Updated last year
- ☆24Updated 6 months ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆56Updated last week
- ☆85Updated 5 months ago
- Community curated list of System and Network policy templates for the KubeArmor and Cilium☆41Updated 3 weeks ago
- Evolution process of The Falco Project☆48Updated this week
- A CLI used to work with the Wolfi OSS project☆57Updated this week
- A Kubernetes CSI plugin to automatically mount SPIFFE certificates to Pods using ephemeral volumes☆74Updated this week
- 🔍 Rekor transparency log monitoring and alerting☆27Updated last year
- sigstore installation walkthrough, local☆56Updated 6 months ago
- ☆19Updated 3 months ago
- A command line tool to automatically generate seccomp profiles.☆25Updated 3 years ago
- Cloud Native Security Hub - Security Resources☆54Updated 4 years ago
- A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.☆131Updated last week
- Kit for building Falco drivers: kernel modules or eBPF probes☆64Updated 3 weeks ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆35Updated 7 months ago
- vexctl is a tool to attest VEX impact statements☆44Updated last year
- A tool to create, transform and attest VEX metadata☆118Updated last week
- ☆35Updated 3 years ago
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆64Updated 2 weeks ago
- Kubernetes audit logging, when you don't control the control plane☆65Updated this week