aws-samples / amazon-eks-use-sbom-to-find-container-image-with-vulnerable-softwareLinks
This repo hosts Terraform code for generating and analyzing Software Bill of Materials (SBOM) for Amazon ECR images. It helps identify Amazon EKS images with vulnerable software components using Amazon Athena.
☆16Updated 2 years ago
Alternatives and similar repositories for amazon-eks-use-sbom-to-find-container-image-with-vulnerable-software
Users that are interested in amazon-eks-use-sbom-to-find-container-image-with-vulnerable-software are comparing it to the libraries listed below
Sorting:
- Useful scripts, Docker images, docker-compose apps, and Terraform modules.☆150Updated last week
- Rego policies for enterprise-scale Compliance-as-Code with OPA Conftest.☆60Updated 2 years ago
- Evaluate source control (GitHub) security posture☆251Updated 2 years ago
- All-in-one auditing toolkit for identifying common security issues in managed Kubernetes environments. Currently supports Amazon EKS.☆366Updated 4 months ago
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Updated 2 years ago
- ☆285Updated 3 years ago
- Crowdsourced list of sensitive IAM Actions☆157Updated last year
- Uses the AWS Cloud Control API to list resources that are present in a given AWS account and region(s). Discovered resources are written …☆180Updated 7 months ago
- Container Hardening Priorities Specification (CHPS)☆43Updated 8 months ago
- A cloud security tool to search and clean up unused AWS access keys, written in Go.☆51Updated 3 years ago
- ☆253Updated last week
- Generate a score for your sbom to understand if it will actually be useful.☆234Updated last year
- The Compliance Validator☆184Updated last month
- SCP management tool☆134Updated 2 years ago
- Automate permissions to your cloud and critical applications.☆242Updated last year
- ☆55Updated last week
- Get notified when actions are taken in the AWS Console.☆325Updated 11 months ago
- (D)ocker(F)ile (C)onverter: CLI to convert Dockerfiles to use Chainguard Images and APKs in FROM and RUN lines etc.☆95Updated 3 months ago
- Style guide for Rego☆203Updated 2 months ago
- BadRobot - Operator Security Audit Tool☆223Updated last week
- ☆144Updated 3 weeks ago
- A tool to create, transform and attest VEX metadata☆168Updated last week
- debug IAM roles for service accounts☆66Updated last week
- A Terraform module that makes it a snap to opt out of all AWS AI/ML data harvesting.☆30Updated last year
- Open source compliance tool for development platforms.☆288Updated 2 years ago
- A reading list for software supply-chain security.☆366Updated 3 years ago
- Collection of example Service Control Policies (SCPs) that are useful for sandbox and training AWS accounts.☆155Updated 5 months ago
- A command line tool that validates AWS IAM Policies in a Terraform template against AWS IAM best practices☆343Updated 6 months ago
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆103Updated this week
- Process documentation, non-code deliverables, and miscellaneous artifacts of Kubernetes SIG Security☆230Updated 2 months ago