blackducksoftware / blackduck-docker-inspector
☆20Updated 2 years ago
Alternatives and similar repositories for blackduck-docker-inspector:
Users that are interested in blackduck-docker-inspector are comparing it to the libraries listed below
- Report missing advisories and corrections on OSS Index☆17Updated 2 years ago
- CVE database☆22Updated 4 years ago
- This Repository contains the stable beta preview of the next major secureCodeBox (SCB) release v2.0.0.☆24Updated 4 years ago
- Aqua Enterprise scanner as a plug-in vulnerability scanner in the Harbor registry☆36Updated 3 months ago
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆83Updated this week
- Evaluation Framework for Dependency Analysis (EFDA)☆43Updated 2 years ago
- Dockerized version of Nexus IQ Server☆25Updated last week
- Jenkins plugin that adds Anchore container image analysis and policy evaluation to Jenkins as a build step☆29Updated 3 weeks ago
- Jenkins Plugin from Contrast Security☆13Updated 5 months ago
- Integrates OWASP Zed Attack Proxy reports into SonarQube☆69Updated last year
- ☆92Updated 3 months ago
- A Docker build for OWASP Zed Attack Proxy to be used in CI/CD pipelines☆26Updated 4 years ago
- Container Security Verification Standard☆57Updated 5 years ago
- A simple Java command-line utility to mirror the entire contents of VulnDB.☆44Updated last month
- Integrates Xanitizer results into SonarQube☆21Updated 3 years ago
- OWASP SonarQube Project☆110Updated 5 years ago
- Owasp Zap chart for Kubernetes☆49Updated 2 years ago
- Black Duck plugin for JIRA☆19Updated 2 years ago
- Jenkins plugin for OWASP Dependency-Check. Inspects project components for known vulnerabilities (e.g. CVEs).☆133Updated last week
- A Java library for calculating CVSSv2 and CVSSv3 scores and vectors☆43Updated last month
- Links and resources for the O'Reilly Kubernetes Security book☆98Updated 3 years ago
- OWASP Kubernetes Security Testing Guide☆37Updated 4 months ago
- Incubating project for decoupling responsibilities from Dependency-Track's monolithic API server into separate, scalable services.☆65Updated this week
- Identify vulnerable libraries in Maven dependencies☆46Updated 2 years ago
- Harbor Scanner Adapter for Anchore Engine and Enterprise☆37Updated this week
- Contains scripts for running anchore engine in CI pipelines☆34Updated 2 years ago
- Fortify SonarQube Plugin☆22Updated 4 years ago
- Utility that provides an API and CLI to identify licenses and legal terms☆43Updated 7 months ago
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆57Updated 9 months ago
- Website for OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆21Updated 2 months ago