aquasecurity / vuln-list
NVD, Ubuntu, Alpine
☆425Updated this week
Alternatives and similar repositories for vuln-list:
Users that are interested in vuln-list are comparing it to the libraries listed below
- ☆181Updated last week
- ☆252Updated last week
- Static Analysis Library for Containers☆198Updated last year
- A set of tools to work with the feeds (vulnerabilities, CPE dictionary etc.) distributed by National Vulnerability Database (NVD)☆460Updated last year
- Vulncode-DB project☆577Updated 3 years ago
- Dependency Parser for Multiple Programming Languages☆146Updated 9 months ago
- awesome resources about cloud native security 🐿☆314Updated last year
- Trivy's misconfiguration scanning engine☆217Updated 2 months ago
- Global Security Database☆315Updated 10 months ago
- Tool for searching Exploits from Exploit Databases, etc.☆276Updated last week
- Checks whether a Linux server according to security best practices as defined in the CIS Distribution-Independent Linux Benchmark☆167Updated last month
- Vulnogram is a tool for creating and editing CVE information in CVE JSON format☆174Updated 2 months ago
- Use Trivy as a plug-in vulnerability scanner in the Harbor registry☆221Updated 6 months ago
- Semgrep Community Edition rules, maintained by Semgrep and the community. Free to use under the Semgrep Rules License.☆880Updated this week
- Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependenci…☆836Updated last year
- Build a local copy of CVE (NVD and Japanese JVN). Server mode for easy querying.☆385Updated last week
- A container analysis and exploitation tool for pentesters and engineers.☆663Updated last year
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.1, purl, and vers…☆111Updated 3 weeks ago
- Open Source Vulnerability schema.☆197Updated last week
- Checks whether Docker is deployed according to security best practices as defined in the CIS Docker Benchmark☆215Updated last month
- Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized en…☆1,157Updated last month
- A repository with examples of CycloneDX BOMs (SBOM, SaaSBOM, OBOM, VEX, etc)☆191Updated 3 months ago
- Evaluate the RBAC permissions of Kubernetes identities through policies written in Rego☆343Updated last year
- CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.☆343Updated 4 months ago
- A guided mutation-based fuzzer for ML-based Web Application Firewalls☆183Updated last year
- Build a local copy of Security Tracker. Notify via E-mail/Slack if there is an update.☆140Updated last week
- A reading list for software supply-chain security.☆362Updated 2 years ago
- Python wrapper for the API of cve-search☆119Updated last year
- DTrackAuditor is the python script to faciliate usage of DependencyTrack in the CI.☆10Updated last month
- Peirates - Kubernetes Penetration Testing tool☆1,290Updated last week