blackducksoftware / hub
Black Duck Docker Orchestration Files/Documentation
☆120Updated last week
Related projects ⓘ
Alternatives and complementary repositories for hub
- Scanning and analysis for Black Duck SCA products.☆159Updated this week
- HUB REST API Python bindings☆89Updated 3 weeks ago
- ☆234Updated this week
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆81Updated this week
- A set of scripts inspired by CIS Kubernetes Benchmark that checks best-practices of Kubernetes installations☆264Updated last year
- A simple Java command-line utility to mirror the CVE JSON data from NIST.☆206Updated 2 years ago
- CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.☆314Updated 3 weeks ago
- Static Analysis Library for Containers☆199Updated last year
- Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects☆298Updated last week
- NVD, Ubuntu, Alpine☆410Updated this week
- Integrates OWASP Zed Attack Proxy reports into SonarQube☆69Updated last year
- A utility for validating and parsing Common Platform Enumeration (CPE) v2.2 and v2.3 as originally defined by MITRE and maintained by NIS…☆47Updated last week
- Checkmarx Scan and Result Orchestration☆88Updated this week
- Node application to help managing Maturity Models like the ones created by BSIMM and OpenSAMM☆188Updated 6 years ago
- CVE Automation Working Group☆160Updated this week
- Frontend UI for Dependency-Track☆106Updated this week
- Main repository for the official Dependency-Track Jenkins plugin☆44Updated last month
- Run CoreOs Clair standalone☆254Updated 4 months ago
- Simple command-line client to the Anchore Engine service☆114Updated 4 months ago
- Evaluation Framework for Dependency Analysis (EFDA)☆42Updated 2 years ago
- foundation modules for scanning container packages and reporting vulnerabilities☆144Updated this week
- SW360 project☆123Updated this week
- This project is deprecated. Work is now done on https://github.com/anchore/syft and https://github.com/anchore/grype for local-host Softw…☆361Updated 4 years ago
- Checks whether Docker is deployed according to security best practices as defined in the CIS Docker Benchmark☆212Updated 7 months ago
- Jenkins plugin for OWASP Dependency-Check. Inspects project components for known vulnerabilities (e.g. CVEs).☆129Updated this week
- OWASP Dependency Track API client for intergration into CI/CD pipeline☆51Updated 3 months ago
- Utility that converts SBOM documents from CycloneDX to SPDX☆29Updated 10 months ago
- Support CI generation of SBOMs via golang tooling.☆407Updated 10 months ago
- SCANOSS Open Source Inventory Engine☆35Updated 2 months ago