blackducksoftware / hubLinks
Black Duck Docker Orchestration Files/Documentation
☆130Updated 3 weeks ago
Alternatives and similar repositories for hub
Users that are interested in hub are comparing it to the libraries listed below
Sorting:
- Scanning and analysis for Black Duck SCA products.☆188Updated this week
- HUB REST API Python bindings☆96Updated last month
- Jenkins plugin for OWASP Dependency-Check. Inspects project components for known vulnerabilities (e.g. CVEs).☆137Updated last week
- A simple Java command-line utility to mirror the CVE JSON data from NIST.☆214Updated 3 years ago
- Simple command-line client to the Anchore Engine service☆113Updated last year
- NVD, Ubuntu, Alpine☆449Updated this week
- ☆21Updated 3 years ago
- A set of scripts inspired by CIS Kubernetes Benchmark that checks best-practices of Kubernetes installations☆266Updated 2 years ago
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆101Updated last month
- Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects☆351Updated this week
- Integrates Dependency-Check reports into SonarQube☆680Updated 2 months ago
- Integrates OWASP Zed Attack Proxy reports into SonarQube☆73Updated 5 months ago
- Contains scripts for running anchore engine in CI pipelines☆34Updated 3 years ago
- Analyses your Java applications for open-source dependencies with known vulnerabilities, using both static analysis and testing to determ…☆541Updated 2 years ago
- Use Trivy as a plug-in vulnerability scanner in the Harbor registry☆225Updated last year
- Run CoreOs Clair standalone☆254Updated last year
- CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.☆443Updated last month
- CIS Docker Benchmark - InSpec Profile☆525Updated 2 years ago
- Main repository for the official Dependency-Track Jenkins plugin☆50Updated this week
- Support CI generation of SBOMs via golang tooling.☆423Updated last year
- This project is deprecated. Work is now done on https://github.com/anchore/syft and https://github.com/anchore/grype for local-host Softw…☆361Updated 5 years ago
- Evaluation Framework for Dependency Analysis (EFDA)☆44Updated 3 years ago
- CIS Kubernetes Benchmark - InSpec Profile☆309Updated last year
- Frontend UI for Dependency-Track☆147Updated 2 weeks ago
- Jenkins audit-trail plugin☆24Updated 3 weeks ago
- ☆295Updated last week
- A cli that can be used to query various online vulnerability sources such as the NVD or GHSA. The CLI and docker images can be used to mi…☆154Updated last week
- Checkmarx Scan and Result Orchestration☆100Updated 3 weeks ago
- OWASP Benchmark is a test suite designed to verify the speed and accuracy of software vulnerability detection tools. A fully runnable web…☆767Updated this week
- Fully open-source SAST scanner supporting a range of languages and frameworks. Integrates with major CI pipelines and IDE such as Azure D…☆150Updated 5 years ago