blackducksoftware / hub
Black Duck Docker Orchestration Files/Documentation
☆121Updated last month
Alternatives and similar repositories for hub:
Users that are interested in hub are comparing it to the libraries listed below
- Scanning and analysis for Black Duck SCA products.☆166Updated this week
- HUB REST API Python bindings☆91Updated last week
- ☆51Updated last month
- A simple Java command-line utility to mirror the CVE JSON data from NIST.☆206Updated 2 years ago
- ☆21Updated 2 years ago
- Jenkins plugin for OWASP Dependency-Check. Inspects project components for known vulnerabilities (e.g. CVEs).☆133Updated 3 weeks ago
- Simple command-line client to the Anchore Engine service☆114Updated 6 months ago
- Evaluation Framework for Dependency Analysis (EFDA)☆43Updated 2 years ago
- CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.☆327Updated 2 months ago
- Home page of project "KB"☆117Updated last month
- Checkmarx Scan and Result Orchestration☆88Updated this week
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆84Updated this week
- A collection of test cases in the Java language. It contains examples for 112 different CWEs.☆53Updated 3 years ago
- Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects☆305Updated last month
- CIS Kubernetes Benchmark - InSpec Profile☆299Updated 5 months ago
- A set of scripts inspired by CIS Kubernetes Benchmark that checks best-practices of Kubernetes installations☆264Updated last year
- Java libraries for working with available vulnerability data sources (GitHub Security Advisories, NVD, EPSS, CISA Known Exploited Vulnera…☆133Updated this week
- Static Analysis Library for Containers☆199Updated last year
- NVD, Ubuntu, Alpine☆416Updated this week
- A utility for validating and parsing Common Platform Enumeration (CPE) v2.2 and v2.3 as originally defined by MITRE and maintained by NIS…☆47Updated 3 weeks ago
- Main repository for the official Dependency-Track Jenkins plugin☆46Updated last week
- SonarQube plugin for identifying hardcoded secrets, such as passwords, API keys, AWS credentials, etc..☆100Updated last year
- CIS Docker Benchmark - InSpec Profile☆495Updated last year
- SonarQube Scanner for Jenkins☆46Updated 2 months ago
- Run CoreOs Clair standalone☆254Updated 2 weeks ago
- foundation modules for scanning container packages and reporting vulnerabilities☆144Updated last week
- Frontend UI for Dependency-Track☆109Updated this week
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆141Updated 10 months ago
- Integrates Dependency-Check reports into SonarQube☆624Updated last week
- SPDX Tools☆132Updated last year