aws-samples / amazon-eks-use-sbom-to-find-container-image-with-vulnerable-software
This repo hosts Terraform code for generating and analyzing Software Bill of Materials (SBOM) for Amazon ECR images. It helps identify Amazon EKS images with vulnerable software components using Amazon Athena.
☆15Updated last year
Alternatives and similar repositories for amazon-eks-use-sbom-to-find-container-image-with-vulnerable-software:
Users that are interested in amazon-eks-use-sbom-to-find-container-image-with-vulnerable-software are comparing it to the libraries listed below
- This repository contains the code used during my demo at BSidesNYC 2023 where I presented a new method for analysing volatile memory in G…☆1Updated 6 months ago
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated 3 weeks ago
- All Aqua deployments options and aquactl configuration☆59Updated last week
- CLI tool for Amazon ECR☆17Updated last year
- AwS CLouD NeTWoRkiNg SuiTE 3000☆22Updated 2 weeks ago
- Slack alert bot for matching Github Audit Events☆10Updated 5 months ago
- Trust Dexter to ensure that all your images are pinned by digest for better security☆29Updated last year
- Rego policies for enterprise-scale Compliance-as-Code with OPA Conftest.☆58Updated last year
- Dynamic Application Security Testing (DAST) for Cloud☆44Updated 2 years ago
- A single repo that shows terraform, terragrunt, helm & docker☆19Updated 2 years ago
- A Go program to display certificate chains simply and quickly with an easy to remember syntax☆27Updated 6 months ago
- Documents and tools powering the Wolfi OS community☆20Updated last year
- ☆41Updated 2 years ago
- Lambda function for verifying signed images in ECS☆33Updated last year
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Updated 2 years ago
- Using HashiCorp Boundary, Vault, and Consul with Amazon ECS☆12Updated 3 years ago
- Run individual controls or full compliance benchmarks for NSA CISA Kubernetes Hardening Guidance across all of your Kubernetes clusters u…☆31Updated 3 weeks ago
- ☆63Updated 2 months ago
- An SBOM query language and associated utilities☆54Updated last year
- *READY TO USE* Terraform baseline for implementing essential AWS security best practices, including Organizations, SSO, MFA, SCPs, Budget…☆23Updated 6 months ago
- vexctl is a tool to attest VEX impact statements☆44Updated 2 years ago
- ☆35Updated 3 years ago
- etcd-k8s-extract takes in an etcd data directory or db file used in kubernetes, extracts the kubernetes resources and then writes the res…☆37Updated 4 months ago
- ☆11Updated 2 years ago
- ☆12Updated 3 years ago
- Cloud Dev & Ops Devcontainer☆41Updated last month
- ☆18Updated 3 years ago
- Example showing how to use Vault with ArgoCD☆9Updated 2 years ago
- Ghat is a tool for updating your GitHub actions and Terraform with the latest version of it dependencies and using immutable hashes inste…☆26Updated last week
- Demos for several kubernetes security features☆63Updated 3 months ago