blackducksoftware / hubLinks
Black Duck Docker Orchestration Files/Documentation
☆132Updated last week
Alternatives and similar repositories for hub
Users that are interested in hub are comparing it to the libraries listed below
Sorting:
- Scanning and analysis for Black Duck SCA products.☆186Updated last week
- HUB REST API Python bindings☆96Updated last month
- A simple Java command-line utility to mirror the CVE JSON data from NIST.☆212Updated 3 years ago
- Jenkins plugin for OWASP Dependency-Check. Inspects project components for known vulnerabilities (e.g. CVEs).☆137Updated last month
- Simple command-line client to the Anchore Engine service☆113Updated last year
- ☆21Updated 3 years ago
- Integrates OWASP Zed Attack Proxy reports into SonarQube☆73Updated 5 months ago
- A set of scripts inspired by CIS Kubernetes Benchmark that checks best-practices of Kubernetes installations☆266Updated 2 years ago
- Use Trivy as a plug-in vulnerability scanner in the Harbor registry☆225Updated last year
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆100Updated last week
- Contains scripts for running anchore engine in CI pipelines☆34Updated 3 years ago
- Checkmarx Scan and Result Orchestration☆99Updated this week
- CIS Docker Benchmark - InSpec Profile☆524Updated 2 years ago
- NVD, Ubuntu, Alpine☆446Updated last week
- Run CoreOs Clair standalone☆253Updated 11 months ago
- A utility for validating and parsing Common Platform Enumeration (CPE) v2.2 and v2.3 as originally defined by MITRE and maintained by NIS…☆54Updated 3 weeks ago
- CIS Kubernetes Benchmark - InSpec Profile☆309Updated last year
- CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.☆436Updated 2 weeks ago
- Main repository for the official Dependency-Track Jenkins plugin☆50Updated this week
- Analyses your Java applications for open-source dependencies with known vulnerabilities, using both static analysis and testing to determ…☆542Updated 2 years ago
- A cli that can be used to query various online vulnerability sources such as the NVD or GHSA. The CLI and docker images can be used to mi…☆154Updated last week
- Integrates Dependency-Check reports into SonarQube☆679Updated 2 months ago
- This project is deprecated. Work is now done on https://github.com/anchore/syft and https://github.com/anchore/grype for local-host Softw…☆361Updated 5 years ago
- Frontend UI for Dependency-Track☆147Updated this week
- ☆290Updated this week
- Fortify Jenkins plugin☆26Updated 10 months ago
- Evaluation Framework for Dependency Analysis (EFDA)☆44Updated 3 years ago
- Enables scanning of docker builds in Jenkins for OS package vulnerabilities.☆35Updated 2 years ago
- Fully open-source SAST scanner supporting a range of languages and frameworks. Integrates with major CI pipelines and IDE such as Azure D…☆150Updated 5 years ago
- Harbor Scanner Adapter for Anchore Engine and Enterprise☆39Updated last week